|
3561
|
- |
|
dnnsoftware
|
dotnetnuke
|
Vulnerabilidad no específica en Skin Manager en DotNetNuke anteriores a v4.8.2 permite a administradores autentificados remotos ejecutar una aplicación lógica desde el lado del servidor, subiendo un …
|
NVD-CWE-noinfo
|
CVE-2008-6542
|
2026-04-25 02:34 |
2009-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3562
|
- |
|
dnnsoftware
|
dotnetnuke
|
Cross-site scripting (XSS) vulnerability in Default.aspx in DotNetNuke 4.8.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6644
|
2026-04-25 02:34 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3563
|
- |
|
dnnsoftware
|
dotnetnuke
|
Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en Default.aspx en DotNetNuke v4.8.3 y anteriores permite a atacantes remotos inyectar secuencias de comandos web o HTML a traves de …
|
CWE-79
Cross-site Scripting
|
CVE-2008-6644
|
2026-04-25 02:34 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3564
|
- |
|
dnnsoftware
|
dotnetnuke
|
Cross-site scripting (XSS) vulnerability in the Language skin object in DotNetNuke before 4.8.4 allows remote attackers to inject arbitrary web script or HTML via "newly generated paths."
|
CWE-79
Cross-site Scripting
|
CVE-2008-6732
|
2026-04-25 02:34 |
2009-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3565
|
- |
|
dnnsoftware
|
dotnetnuke
|
Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en el objeto "Language skin" en DotNetNuke anteriores a v4.8.4 permite a atacantes remotos inyectar secuencias de comando web o HTML …
|
CWE-79
Cross-site Scripting
|
CVE-2008-6732
|
2026-04-25 02:34 |
2009-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3566
|
- |
|
dnnsoftware
|
dotnetnuke
|
Cross-site scripting (XSS) vulnerability in the error handling page in DotNetNuke 4.6.2 through 4.8.3 allows remote attackers to inject arbitrary web script or HTML via the querystring parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6733
|
2026-04-25 02:34 |
2009-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3567
|
- |
|
dnnsoftware
|
dotnetnuke
|
Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en la pagina de manejo de errores en DotNetNuke v4.6.2 hasta la v4.8.3 permite a atacantes remotos inyectar secuencias de comandos w…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6733
|
2026-04-25 02:34 |
2009-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3568
|
- |
|
dnnsoftware
|
dotnetnuke
|
Cross-site scripting (XSS) vulnerability in Website\admin\Sales\paypalipn.aspx in DotNetNuke (DNN) before 4.9.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors …
|
CWE-79
Cross-site Scripting
|
CVE-2009-1366
|
2026-04-25 02:34 |
2009-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3569
|
- |
|
dnnsoftware
|
dotnetnuke
|
Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en Website\admin\Sales\paypalipn.aspx en DotNetNuke (DNN) versiones anteriores v4.9.3 permite a atacantes remotos inyectar secuencias…
|
CWE-79
Cross-site Scripting
|
CVE-2009-1366
|
2026-04-25 02:34 |
2009-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3570
|
- |
|
dnnsoftware
|
dotnetnuke
|
Unspecified vulnerability in DotNetNuke 4.4.1 through 4.8.4 allows remote authenticated users to bypass authentication and gain privileges via unknown vectors related to a "unique id" for user action…
|
NVD-CWE-noinfo
|
CVE-2008-7100
|
2026-04-25 02:34 |
2009-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|