Page 2 of 7 results (0.002 seconds)

CVSS: 4.3EPSS: 0%CPEs: 35EXPL: 0

Multiple cross-site scripting (XSS) vulnerabilities in PunBB before 1.2.19 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in (1) include/parser.php and (2) moderate.php. Múltiples vulnerabilidades de tipo cross-site scripting (XSS) en PunBB anterior a versión 1.2.19, permiten a los atacantes remotos inyectar script web o HTML arbitrario por medio de vectores no especificados en los archivos (1) include/parser.php y (2) moderate.php. • http://punbb.informer.com http://punbb.informer.com/download/changelogs/1.2.17_to_1.2.19.txt http://punbb.informer.com/forums/topic/19539/punbb-1219 http://secunia.com/advisories/31219 http://www.securityfocus.com/bid/30396 https://exchange.xforce.ibmcloud.com/vulnerabilities/44009 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 10.0EPSS: 1%CPEs: 34EXPL: 0

Unspecified vulnerability in PunBB before 1.2.19 allows remote attackers to inject arbitrary SMTP commands via unknown vectors. Vulnerabilidad sin especificar en PunBB anterior a 1.2.19, permite a atacantes remotos inyectar comandos SMTP a través de vectores no especificados. • http://punbb.informer.com http://punbb.informer.com/download/changelogs/1.2.17_to_1.2.19.txt http://punbb.informer.com/forums/topic/19539/punbb-1219 http://secunia.com/advisories/31219 http://www.securityfocus.com/bid/30395 https://exchange.xforce.ibmcloud.com/vulnerabilities/44010 • CWE-94: Improper Control of Generation of Code ('Code Injection') •