|
296161
|
7.5 |
HIGH
Network
|
joomla
|
joomla\!
|
Joomla! core 1.7.1 allows information disclosure due to weak encryption
|
CWE-326
Inadequate Encryption Strength
|
CVE-2011-3629
|
2024-11-21 10:30 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296162
|
6.1 |
MEDIUM
Network
|
phorum
|
phorum
|
A Cross-Site Scripting (XSS) vulnerability exists in the admin login screen in Phorum before 5.2.18.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3622
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296163
|
9.8 |
CRITICAL
Network
|
fluxbb
|
fluxbb
|
A reverse proxy issue exists in FluxBB before 1.4.7 when FORUM_BEHIND_REVERSE_PROXY is enabled.
|
NVD-CWE-noinfo
|
CVE-2011-3621
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296164
|
9.8 |
CRITICAL
Network
|
vanillaforums
|
vanilla
|
An Access Control vulnerability exists in the Facebook, Twitter, and Embedded plugins in Vanilla Forums before 2.0.17.9.
|
NVD-CWE-Other
|
CVE-2011-3614
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296165
|
7.5 |
HIGH
Network
|
vanillaforums
|
vanilla
|
An issue exists in Vanilla Forums before 2.0.17.9 due to the way cookies are handled.
|
CWE-200
Information Exposure
|
CVE-2011-3613
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296166
|
8.8 |
HIGH
Network
|
usebb
|
usebb
|
Cross-Site Request Forgery (CSRF) vulnerability exists in panel.php in UseBB before 1.0.12.
|
CWE-352
Origin Validation Error
|
CVE-2011-3612
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296167
|
7.2 |
HIGH
Network
|
usebb
|
usebb
|
A File Inclusion vulnerability exists in act parameter to admin.php in UseBB before 1.0.12.
|
CWE-20
Improper Input Validation
|
CVE-2011-3611
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296168
|
6.1 |
MEDIUM
Network
|
s9y
|
serendipity_event_freetag
|
A Cross-site Scripting (XSS) vulnerability exists in the Serendipity freetag plugin before 3.30 in the tagcloud parameter to plugins/serendipity_event_freetag/tagcloud.swf.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3610
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296169
|
5.4 |
MEDIUM
Network
|
joomla
|
joomla\!
|
Multiple Cross-site Scripting (XSS) vulnerabilities exist in Joomla! through 1.7.0 in index.php in the search word, extension, asset, and author parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3595
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296170
|
8.8 |
HIGH
Network
|
anelectron
|
advanced_electron_forums
|
A Cross-site Request Forgery (CSRF) vulnerability exists in Advanced Electron Forums (AEF) through 1.0.9 due to inadequate confirmation for sensitive transactions in the administrator functions.
|
CWE-352
Origin Validation Error
|
CVE-2011-3582
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|