RSS   Vulnerabilities for 'Ozjournals'   RSS

2008-01-23
 
CVE-2008-0435

 

 
Directory traversal vulnerability in index.php in OZJournals 2.1.1 allows remote attackers to read portions of arbitrary files via a .. (dot dot) in the id parameter in a printpreview action.

 
2006-08-11
 
CVE-2006-4086

 

 
Cross-site scripting (XSS) vulnerability in index.php in Elaine Aquino Online Zone Journals (OZJournals) 1.5 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

 
2006-08-09
 
CVE-2006-4069

CWE-Other
 

 
Multiple cross-site scripting (XSS) vulnerabilities in Elaine Aquino Online Zone Journals (OZJournals) 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) m and (2) c parameters in index.php, (3) a search action, and (4) a "submit comment" action.

 
2006-05-15
 
CVE-2006-2390

 

 
Cross-site scripting (XSS) vulnerability in OZJournals 1.2 allows remote attackers to inject arbitrary web script or HTML via the vname parameter in the comments functionality.

 


Copyright 2024, cxsecurity.com

 

Back to Top