RSS   Podatności dla 'Tmspublisher'   RSS

2005-12-31
 
CVE-2005-4722

 

 
_Request_Message.cfm in tmsPUBLISHER 3.3 allows remote attackers to obtain sensitive information via an invalid id argument to pagename.cfm, which reveals the installation path in an error message.

 
 
CVE-2005-4721

 

 
Cross-site scripting (XSS) vulnerability in search.cfm in tmsPUBLISHER 3.3 allows remote attackers to inject arbitrary web script or HTML via the q parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top