|
299651
|
9.6 |
CRITICAL
Network
|
flowplayer
|
flowplayer_flash
|
Cross-site scripting (XSS) vulnerability in Flowplayer Flash 3.2.7 through 3.2.16, as used in the News system (news) extension for TYPO3 and Mahara, allows remote attackers to inject arbitrary web sc…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3642
|
2024-11-21 10:30 |
2020-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299652
|
7.5 |
HIGH
Network
|
joomla
|
joomla\!
|
Joomla! core 1.7.1 allows information disclosure due to weak encryption
|
CWE-326
Inadequate Encryption Strength
|
CVE-2011-3629
|
2024-11-21 10:30 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299653
|
6.1 |
MEDIUM
Network
|
phorum
|
phorum
|
A Cross-Site Scripting (XSS) vulnerability exists in the admin login screen in Phorum before 5.2.18.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3622
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299654
|
9.8 |
CRITICAL
Network
|
fluxbb
|
fluxbb
|
A reverse proxy issue exists in FluxBB before 1.4.7 when FORUM_BEHIND_REVERSE_PROXY is enabled.
|
NVD-CWE-noinfo
|
CVE-2011-3621
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299655
|
9.8 |
CRITICAL
Network
|
vanillaforums
|
vanilla
|
An Access Control vulnerability exists in the Facebook, Twitter, and Embedded plugins in Vanilla Forums before 2.0.17.9.
|
NVD-CWE-Other
|
CVE-2011-3614
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299656
|
7.5 |
HIGH
Network
|
vanillaforums
|
vanilla
|
An issue exists in Vanilla Forums before 2.0.17.9 due to the way cookies are handled.
|
CWE-200
Information Exposure
|
CVE-2011-3613
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299657
|
8.8 |
HIGH
Network
|
usebb
|
usebb
|
Cross-Site Request Forgery (CSRF) vulnerability exists in panel.php in UseBB before 1.0.12.
|
CWE-352
Origin Validation Error
|
CVE-2011-3612
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299658
|
7.2 |
HIGH
Network
|
usebb
|
usebb
|
A File Inclusion vulnerability exists in act parameter to admin.php in UseBB before 1.0.12.
|
CWE-20
Improper Input Validation
|
CVE-2011-3611
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299659
|
6.1 |
MEDIUM
Network
|
s9y
|
serendipity_event_freetag
|
A Cross-site Scripting (XSS) vulnerability exists in the Serendipity freetag plugin before 3.30 in the tagcloud parameter to plugins/serendipity_event_freetag/tagcloud.swf.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3610
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299660
|
5.4 |
MEDIUM
Network
|
joomla
|
joomla\!
|
Multiple Cross-site Scripting (XSS) vulnerabilities exist in Joomla! through 1.7.0 in index.php in the search word, extension, asset, and author parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3595
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|