Page 2 of 8 results (0.004 seconds)

CVSS: 7.5EPSS: 1%CPEs: 1EXPL: 0

Cross-site scripting vulnerability in Namazu 2.0.9 and earlier allows remote attackers to execute arbitrary Javascript as other web users via an error message that is returned when an invalid index file is specified in the idxname parameter. • http://marc.info/?l=bugtraq&m=100947261916155&w=2 http://marc.info/?l=bugtraq&m=101060476404565&w=2 http://marc.info/?l=bugtraq&m=101068116016472&w=2 http://www.osvdb.org/5691 https://exchange.xforce.ibmcloud.com/vulnerabilities/7875 •

CVSS: 7.5EPSS: 1%CPEs: 1EXPL: 0

Cross-site scripting vulnerability in Namazu 2.0.8 and earlier allows remote attackers to execute arbitrary Javascript as other web users via the index file name that is displayed when displaying hit numbers. • http://marc.info/?l=bugtraq&w=2&r=1&s=namazu&q=b http://www.osvdb.org/5690 https://exchange.xforce.ibmcloud.com/vulnerabilities/7875 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

Cross-site scripting vulnerability in namazu.cgi for Namazu 2.0.7 and earlier allows remote attackers to execute arbitrary Javascript as other web users via the lang parameter. • http://marc.info/?l=bugtraq&w=2&r=1&s=namazu&q=b http://search.namazu.org/ml/namazu-devel-ja/msg02114.html •