Kipper
Bookelves · 5 CVEs
CVE-2009-0767
MEDIUM
Kipper 2.01 stores sensitive information under the web root with insufficient access control, which allows remote attac…
Mar 3, 2009
CVE-2009-0766
HIGH
Directory traversal vulnerability in default.php in Kipper 2.01 allows remote attackers to include and execute arbitrar…
Mar 3, 2009
CVE-2009-0765
HIGH
Directory traversal vulnerability in index.php in Kipper 2.01 allows remote attackers to include and execute arbitrary…
Mar 3, 2009
CVE-2009-0764
MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Kipper 2.01 allow remote attackers to inject arbitrary web scrip…
Mar 3, 2009
CVE-2009-0763
MEDIUM
Cross-site scripting (XSS) vulnerability in default.php in Kipper 2.01 allows remote attackers to inject arbitrary web…
Mar 3, 2009
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2009-0767 | Kipper 2.01 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing crede… | MEDIUM | 2.33% | Mar 3, 2009 |
| CVE-2009-0766 | Directory traversal vulnerability in default.php in Kipper 2.01 allows remote attackers to include and execute arbitrary local files via directory traversal se… | HIGH | 2.36% | Mar 3, 2009 |
| CVE-2009-0765 | Directory traversal vulnerability in index.php in Kipper 2.01 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the co… | HIGH | 2.35% | Mar 3, 2009 |
| CVE-2009-0764 | Multiple cross-site scripting (XSS) vulnerabilities in Kipper 2.01 allow remote attackers to inject arbitrary web script or HTML via the charm parameter to (1)… | MEDIUM | 1.20% | Mar 3, 2009 |
| CVE-2009-0763 | Cross-site scripting (XSS) vulnerability in default.php in Kipper 2.01 allows remote attackers to inject arbitrary web script or HTML via the charm parameter. | MEDIUM | 1.48% | Mar 3, 2009 |
Showing 1 to 5 of 5 CVEs