Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lethalman

#21414of 53,632
11.4Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2003-2492
4.3
2003-12-31
Php Nuke · Php-Nuke · CVE-2003-1547
**Name of the Vulnerable Software and Affected Versions** PHP-Nuke versions 6.x **Description** A cross-site scripting issue allows remote attackers to inject arbitrary web script or HTML via the `subject` parameter in the block-Forums.php file of the Splatt Forum module. **Recommendations** For PHP-Nuke version 6.x, update the block-Forums.php file in the Splatt Forum module to properly sanitize the `subject` parameter and prevent arbitrary web script or HTML injection.
PT-2003-1734
7.1
2003-08-18
Splatt · Splatt Forum · CVE-2003-0590
Name of the Vulnerable Software and Affected Versions: Splatt Forum (affected versions not specified) Description: A cross-site scripting (XSS) issue exists, allowing remote attackers to insert arbitrary HTML and web script via the `image subject` field. This field is related to the post icon. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.