2 results (0.004 seconds)

CVSS: 6.1EPSS: 0%CPEs: 3EXPL: 4

11 Dec 2005 — Cross-site scripting (XSS) vulnerability in cal_make.pl in ACME PerlCal 2.99.20 allows remote attackers to inject arbitrary web script or HTML via the p0 parameter. Vulnerabilidad de secuencias de comandos en sitos cruzados (XSS) en cal_make.pl de ACME PerlCal 2.99.20 permite a atacantes remotos inyectar 'scritp' web o HTML de su elección mediante el parámetro "p0". • http://archives.neohapsis.com/archives/fulldisclosure/2005-12/0315.html •

CVSS: 7.5EPSS: 6%CPEs: 15EXPL: 2

27 Jun 2001 — Directory traversal vulnerability in cal_make.pl in PerlCal allows remote attackers to read arbitrary files via a .. (dot dot) in the p0 parameter. • https://www.exploit-db.com/exploits/20808 •