Vulnerabilities > Zoid Technologies > Project Eros Bbsengine > 2006.04.29
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2006-06-29 | CVE-2006-3308 | Input Validation vulnerability in Project Eros BBSEngine Unspecified vulnerability in the wpprop code for Project EROS bbsengine before 20060622-0315 has unknown impact and remote attack vectors via [img] tags, possibly cross-site scripting (XSS). | 9.3 |
2006-06-29 | CVE-2006-3306 | Cross-Site Scripting vulnerability in Zoid Technologies Project Eros Bbsengine 20060223/20060429 Cross-site scripting (XSS) vulnerability in the preparestring function in lib/common.php in Project EROS bbsengine before 20060501-0142-jam, and possibly earlier versions dating back to 2006-02-23, might allow remote attackers to inject arbitrary web script or HTML via unknown vectors. | 4.3 |