RSS   Vulnerabilities for 'Props'   RSS

2004-04-30
 
CVE-2004-1980

 

 
Directory traversal vulnerability in glossary.php in PROPS 0.6.1 allows remote attackers to view arbitrary files via a .. (dot dot) in (1) module or (2) format variables.

 
 
CVE-2004-1979

 

 
Cross-site scripting (XSS) vulnerability in do_search.php in PROPS 0.6.1 allows remote attackers to inject arbitrary HTML or web script via the search_string parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top