3 results (0.008 seconds)

CVSS: 6.1EPSS: 3%CPEs: 7EXPL: 0

26 Mar 2006 — Multiple cross-site scripting (XSS) vulnerabilities in index.cgi in the login server in University of Washington Pubcookie 3.0.0, 3.1.0, 3.1.1, 3.2 before 3.2.1b, and 3.3 before 3.3.0a allow remote attackers to inject arbitrary web script or HTML via unspecified inputs. • http://pubcookie.org/news/20060306-login-secadv.html •

CVSS: 6.1EPSS: 4%CPEs: 7EXPL: 0

26 Mar 2006 — Multiple cross-site scripting (XSS) vulnerabilities in the mod_pubcookie Apache application server module in University of Washington Pubcookie 1.x, 3.0.0, 3.1.0, 3.1.1, 3.2 before 3.2.1b, and 3.3 before 3.3.0a allow remote attackers to inject arbitrary web script or HTML via unspecified attack vectors. • http://pubcookie.org/news/20060306-apps-secadv.html •

CVSS: 6.1EPSS: 1%CPEs: 7EXPL: 0

26 Mar 2006 — Multiple cross-site scripting (XSS) vulnerabilities in the Microsoft IIS ISAPI filter (aka application server module) in University of Washington Pubcookie 3.1.0, 3.1.1, 3.2 before 3.2.1b, and 3.3 before 3.3.0a allow remote attackers to inject arbitrary web script or HTML via unspecified attack vectors. • http://pubcookie.org/news/20060306-apps-secadv.html •