RSS   Vulnerabilities for 'MPCS'   RSS

2008-05-18
 
CVE-2008-2293

CWE-264
 

 
admin.php in Multi-Page Comment System (MPCS) 1.0 and 1.1 allows remote attackers to bypass authentication and gain privileges by setting the CommentSystemAdmin cookie to 1.

 
2006-06-22
 
CVE-2006-3191

CWE-Other
 

 
Cross-site scripting (XSS) vulnerability in comment.php in MPCS 0.2 allows remote attackers to inject arbitrary web script or HTML via the pageid parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top