RSS   Vulnerabilities for 'Tutos'   RSS

2003-08-07
 
CVE-2003-0482

 

 
TUTOS 1.1 allows remote attackers to execute arbitrary code by uploading the code using file_new.php, then directly accessing the uploaded code via a request to the repository containing the code.

 
 
CVE-2003-0481

 

 
Multiple cross-site scripting (XSS) vulnerabilities in TUTOS 1.1 allow remote attackers to insert arbitrary web script, as demonstrated using the msg parameter to file_select.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top