Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2012-5193 Multiple cross-site scripting (XSS) vulnerabilities in Bitweaver 2.8.1 and earlier allow remote attackers to inject arbitrary web script or HTML via … Bitweaver after 2.8.1 Fix from $1,6002019-11-13 MEDIUM 5.0 CVE-2012-5192EPSS 52% Directory traversal vulnerability in gmap/view_overlay.php in Bitweaver 2.8.1 and earlier allows remote attackers to read arbitrary files via "''%2F"… Bitweaver after 2.8.1 Fix from $1,6002014-01-28 MEDIUM 5.0 CVE-2010-5086 Directory traversal vulnerability in wiki/rankings.php in Bitweaver 2.7 and 2.8.1 allows remote attackers to read arbitrary files via a .. (dot dot) … Bitweaver No fix yet Fix from $1,6002012-03-19 HIGH 7.5 CVE-2009-1678 Directory traversal vulnerability in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and earlier allows remote attackers to creat… Bitweaver after 2.6 Fix from $1,9502009-05-18 MEDIUM 6.5 CVE-2009-1677 Multiple static code injection vulnerabilities in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and earlier allow (1) remote au… Bitweaver after 2.6 Fix from $1,6002009-05-18 HIGH 7.5 CVE-2007-6650 Unrestricted file upload vulnerability in fisheye/upload.php in Bitweaver R2 CMS allows remote attackers to upload arbitrary files by using the image… R2 Cms No fix yet Fix from $1,9502008-01-04 MEDIUM 5.0 CVE-2007-6651 Directory traversal vulnerability in wiki/edit.php in Bitweaver R2 CMS allows remote attackers to obtain sensitive information (script source code) v… Bitweaver No fix yet Fix from $1,6002008-01-04 MEDIUM 6.8 CVE-2007-6412 Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, allows remote attackers to in… Bitweaver after 2.0.0 Fix from $1,6002007-12-17 HIGH 7.5 CVE-2007-6375 Multiple SQL injection vulnerabilities in Bitweaver 2.0.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) sort_mode … Bitweaver after 2.0.0 Fix from $1,9502007-12-15 HIGH 7.5 CVE-2006-6923 SQL injection vulnerability in newsletters/edition.php in bitweaver 1.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via t… Bitweaver No fix yet Fix from $1,9502007-01-13 MEDIUM 6.8 CVE-2006-6925 Multiple cross-site scripting (XSS) vulnerabilities in bitweaver 1.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via … Bitweaver No fix yet Fix from $1,6002007-01-13 MEDIUM 5.0 CVE-2006-6924 bitweaver 1.3.1 and earlier allows remote attackers to obtain sensitive information via a sort_mode=-98 query string to (1) blogs/list_blogs.php, (2)… Bitweaver No fix yet Fix from $1,6002007-01-13 MEDIUM 5.1 CVE-2006-3102EPSS 8% Race condition in articles/BitArticle.php in Bitweaver 1.3, when run on Apache with the mod_mime extension, allows remote attackers to execute arbitr… Bitweaver Patch available Fix from $1,6002006-06-21 MEDIUM 5.0 CVE-2006-3104EPSS 9% users/index.php in Bitweaver 1.3 allows remote attackers to obtain sensitive information via an invalid sort_mode parameter, which reveals the instal… Bitweaver No fix yet Fix from $1,6002006-06-21 MEDIUM 5.0 CVE-2006-3105 CRLF injection vulnerability in Bitweaver 1.3 allows remote attackers to conduct HTTP response splitting attacks by via CRLF sequences in multiple un… Bitweaver No fix yet Fix from $1,6002006-06-21 HIGH 7.5 CVE-2005-4380 Multiple SQL injection vulnerabilities in Bitweaver 1.1 and 1.1.1 beta allow remote attackers to execute arbitrary SQL commands via the (1) sort_mode… Bitweaver Mitigation only Fix from $1,9502005-12-20