Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Warlord

#21171de 53,638
11.8CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2007-3940
7.5
2007-05-11
Thyme · Thyme Calendar · CVE-2007-2621
**Name of the Vulnerable Software and Affected Versions** Thyme Calendar version 1.3 **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `eid` parameter in the event view.php file. **Recommendations** For Thyme Calendar version 1.3, avoid using the `eid` parameter in the event view.php file until the issue is resolved. As a temporary workaround, consider restricting access to the event view.php file to minimize the risk of exploitation.
PT-2005-3253
4.3
2005-07-20
E107 · E107 · CVE-2005-2327
**Name of the Vulnerable Software and Affected Versions** e107 versions 0.617 and earlier **Description** The issue allows remote attackers to inject arbitrary web script or HTML via nested [url] BBCode tags, which can lead to cross-site scripting (XSS). **Recommendations** For versions 0.617 and earlier, update to a version later than 0.617 to resolve the issue.