Jaws

Jaws · 11 CVEs

CVE-2020-35657
HIGH

Jaws through 1.8.0 allows remote authenticated administrators to execute arbitrary code via crafted use of UploadTheme…

Dec 23, 2020

CVE-2020-35656
HIGH

Jaws through 1.8.0 allows remote authenticated administrators to execute arbitrary code via crafted use of admin.php?re…

Dec 23, 2020

CVE-2009-0645
MEDIUM

Directory traversal vulnerability in index.php in Jaws 0.8.8 allows remote authenticated users to read arbitrary files…

Feb 18, 2009

CVE-2006-3292
HIGH

SQL injection vulnerability in the Search gadget in Jaws 0.6.2 allows remote attackers to execute arbitrary SQL command…

Jun 28, 2006

CVE-2005-3955
MEDIUM

Multiple cross-site scripting (XSS) vulnerabilities in MagpieRSS 7.1, as used in (a) blogBuddiesv 0.3, (b) Jaws 0.6.2,…

Dec 1, 2005

CVE-2004-2445
MEDIUM

Directory traversal vulnerability in index.php in Jaws 0.3 BETA allows remote attackers to view arbitrary files via a .…

Aug 20, 2005

CVE-2004-2444
MEDIUM

Cross-site scripting (XSS) vulnerability in index.php in Jaws 0.3 allows remote attackers to inject arbitrary web scrip…

Aug 20, 2005

CVE-2004-2443
HIGH

Jaws 0.3 allows remote attackers to bypass authentication and via an HTTP request to admin.php with the logged cookie s…

Aug 20, 2005

CVE-2005-2179
MEDIUM

PHP remote file inclusion vulnerability in BlogModel.php in Jaws 0.5.2 and earlier allows remote attackers to execute a…

Jul 10, 2005

CVE-2004-2067
HIGH

SQL injection vulnerability in controlpanel.php in Jaws Framework and Content Management System 0.4 allows remote attac…

May 10, 2005

CVE-2005-1231
MEDIUM

Cross-site scripting (XSS) vulnerability in the NewTerm function in GlossaryModel.php in JAWS 0.4 allows remote attacke…

Apr 24, 2005

Showing 1 to 11 of 11 CVEs