Page 6 of 28 results (0.003 seconds)

CVSS: 6.5EPSS: 0%CPEs: 18EXPL: 2

SQL injection vulnerability in profile.php in PunBB 1.2.4 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a change_email action. • https://www.exploit-db.com/exploits/928 http://marc.info/?l=bugtraq&m=111306207306155&w=2 http://secunia.com/advisories/14882 http://www.securityfocus.com/bid/13071 •

CVSS: 4.3EPSS: 0%CPEs: 18EXPL: 0

Cross-site scripting (XSS) vulnerability in PunBB before 1.2.5 allows remote attackers to inject arbitrary web script or HTML. • http://secunia.com/advisories/14882 http://www.punbb.org •

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 2

Cross-site scripting (XSS) vulnerability in PunBB 1.2.3 allows remote attackers to inject arbitrary web script or HTML via the (1) email or (2) Jabber parameters. • https://www.exploit-db.com/exploits/25230 http://securitytracker.com/id?1013446 https://exchange.xforce.ibmcloud.com/vulnerabilities/19725 •