RSS   Vulnerabilities for 'Phpkb'   RSS

2020-03-12
 
CVE-2020-10477

CWE-79
 

 
Reflected XSS in admin/manage-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.

 
 
CVE-2020-10476

CWE-79
 

 
Reflected XSS in admin/manage-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.

 
 
CVE-2020-10448

CWE-79
 

 
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/report-referrers.php by adding a question mark (?) followed by the payload.

 

 >>> Vendor: Knowledgebase-script 2 Products
Phpkb knowledge base software
Phpkb


Copyright 2024, cxsecurity.com

 

Back to Top