RSS   Vulnerabilities for 'Saurus cms'   RSS

2015-04-06
 
CVE-2015-0876

 

 
Multiple cross-site scripting (XSS) vulnerabilities in the print_language_selectbox function in classes/adminpage.inc.php in Saurus CMS Community Edition before 4.7 2015-02-04 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

 
2015-02-09
 
CVE-2015-1562

CWE-79
 

 
Multiple cross-site scripting (XSS) vulnerabilities in Saurus CMS 4.7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter to admin/user_management.php, (2) data_search parameter to /admin/profile_data.php, or (3) filter parameter to error_log.php.

 
2010-05-20
 
CVE-2010-1997

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in admin/edit.php in Saurus CMS 4.7.0 allows remote authenticated users, with "Article list" edit privileges, to inject arbitrary web script or HTML via the pealkiri parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top