Movabletype / Movable Type Open Source
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2012-1497 | The default configuration of Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 supports the "mt:Include file=" attribute, which allows remote au… | MEDIUM | 4.0 | Mar 3, 2012 |
| CVE-2012-1262 | Cross-site scripting (XSS) vulnerability in cgi-bin/mt/mt-wizard.cgi in Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13, when the product is i… | MEDIUM | 4.3 | Mar 3, 2012 |
| CVE-2012-0319 | The file-management system in Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 allows remote authenticated users to execute arbitrary commands… | MEDIUM | 6.5 | Mar 3, 2012 |
| CVE-2012-0318 | Multiple cross-site scripting (XSS) vulnerabilities in Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 allow remote attackers to inject arbitr… | MEDIUM | 4.3 | Mar 3, 2012 |
Showing 1 to 4 of 4 CVEs