Vulnerabilities > Zibbs Project

DATE CVE VULNERABILITY TITLE RISK
2021-11-02 CVE-2020-23718 Cross-site Scripting vulnerability in Zibbs Project Zibbs 1.0
Cross site scripting (XSS) vulnerability in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the route parameter to index.php.
network
low complexity
zibbs-project CWE-79
critical
9.6
2021-11-02 CVE-2020-23719 Cross-site Scripting vulnerability in Zibbs Project Zibbs 1.0
Cross site scripting (XSS) vulnerability in application/controllers/AdminController.php in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the bbsmeta parameter.
network
low complexity
zibbs-project CWE-79
critical
9.6