RSS   Vulnerabilities for 'Telaen'   RSS

2020-02-03
 
CVE-2013-2624

CWE-200
 

 
Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive information through a specially crafted URL request.

 
 
CVE-2013-2623

CWE-79
 

 
Cross-site Scripting (XSS) in Telaen before 1.3.1 allows remote attackers to inject arbitrary web script or HTML via the "f_email" parameter in index.php.

 
 
CVE-2013-2621

CWE-601
 

 
Open Redirection Vulnerability in the redir.php script in Telaen before 1.3.1 allows remote attackers to redirect victims to arbitrary websites via a crafted URL.

 


Copyright 2024, cxsecurity.com

 

Back to Top