Page 6 of 29 results (0.003 seconds)

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 2

Multiple cross-site scripting (XSS) vulnerabilities in Sage allow remote attackers to inject arbitrary web script or HTML via an Atom 1.0 feed, as demonstrated by certain test cases of the James M. Snell Atom 1.0 feed reader test suite. Múltiples vulnerabilidades de secuencias de comandos en sitios cruzados (XSS) en Sage permite a un atacante remoto inyectar secuencias de comandos web o HTML de su elección a través del alimentador Atom 1.0, según lo demostrado por en cierto casos deprueba de la suite de prueba del lector James M. Snell Atom 1.0. • http://mozdev.org/bugs/show_bug.cgi?id=15101 http://www.snellspace.com/wp/?p=410 http://www.snellspace.com/wp/?p=448 •

CVSS: 5.0EPSS: 3%CPEs: 1EXPL: 3

Sage 1.0 b3 allows remote attackers to obtain the root web server path via a URL request for a non-existent module, which returns the path in an error message. • https://www.exploit-db.com/exploits/22269 http://archives.neohapsis.com/archives/bugtraq/2003-02/0236.html http://www.iss.net/security_center/static/11372.php http://www.securityfocus.com/bid/6893 •

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 3

Cross-site scripting vulnerability (XSS) in Sage 1.0 b3 allows remote attackers to insert arbitrary HTML or web script via the mod parameter. • https://www.exploit-db.com/exploits/22270 http://archives.neohapsis.com/archives/bugtraq/2003-02/0236.html http://www.securityfocus.com/bid/6894 https://exchange.xforce.ibmcloud.com/vulnerabilities/11371 •

CVSS: 2.1EPSS: 0%CPEs: 1EXPL: 1

Sage Software MAS 200 allows remote attackers to cause a denial of service by connecting to port 10000 and entering a series of control characters. • http://archives.neohapsis.com/archives/bugtraq/2001-08/0312.html http://www.securityfocus.com/bid/3221 https://exchange.xforce.ibmcloud.com/vulnerabilities/7020 •