Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Eggblog MEDIUM 6.8
CVE-2006-6046

Multiple cross-site scripting (XSS) vulnerabilities in eggblog 3.1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) edit p…

No fix yet
Fix from $1,600 2006-11-22
Eggblog HIGH 7.5
CVE-2006-2727

home/register.php in Eggblog before 3.0 allows remote attackers to change the password of administrators and possibly other users via a modified user…

Fix: after 3.0.6
Fix from $1,950 2006-06-01
Tinybb MEDIUM 6.8
CVE-2006-2740

Multiple SQL injection vulnerabilities in Epicdesigns tinyBB 0.3 allow remote attackers to execute arbitrary SQL commands via the (1) q parameter in …

Fix: after 0.3
Fix from $1,600 2006-06-01
Tinybb MEDIUM 6.8
CVE-2006-2741

Cross-site scripting (XSS) vulnerability in Epicdesigns tinyBB 0.3 allow remote attackers to inject arbitrary web script or HTML via the q parameter …

Fix: after 0.3
Fix from $1,600 2006-06-01
Eggblog MEDIUM 6.4
CVE-2006-2725

SQL injection vulnerability in rss/posts.php in Eggblog before 3.07 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Fix: after 3.0.6
Fix from $1,600 2006-06-01
Tinybb MEDIUM 5.1
CVE-2006-2739EPSS 9%

PHP remote file inclusion vulnerability in footers.php in Epicdesigns tinyBB 0.3, when register_globals is enabled, allows remote attackers to execut…

Fix: after 0.3
Fix from $1,600 2006-06-01
Eggblog HIGH 7.5
CVE-2006-0349

SQL injection vulnerability in eggblog 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to blog.php.

No fix yet
Fix from $1,950 2006-01-21
Eggblog HIGH 7.8
CVE-2005-4546

search.php in eggblog 2.0 allows remote attackers to obtain the full path via an invalid q parameter, as used by the Keyword and Search fields, possi…

Fix: after 2.0
Fix from $1,950 2005-12-28