Page 2 of 7 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 5EXPL: 0

Cross-site scripting vulnerability in BadBlue before 1.6.1 beta allows remote attackers to execute arbitrary script and possibly additional commands via a URL that contains Javascript. • http://marc.info/?l=bugtraq&m=101474387016066&w=2 http://www.iss.net/security_center/static/8294.php http://www.securityfocus.com/bid/4180 •

CVSS: 5.0EPSS: 93%CPEs: 2EXPL: 3

Directory traversal vulnerability in BadBlue before 1.6.1 allows remote attackers to read arbitrary files via a ... (modified dot dot) in the URL. • https://www.exploit-db.com/exploits/21303 http://marc.info/?l=bugtraq&m=101474689126219&w=2 http://www.iss.net/security_center/static/8295.php http://www.securityfocus.com/bid/4179 •