Wired Community Software / Wwwthreads
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2006-5059 | Multiple cross-site scripting (XSS) vulnerabilities in WWWthreads 5.4.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the Cat p… | MEDIUM | 5.1 | Sep 28, 2006 |
| CVE-2006-3909 | Cross-site scripting (XSS) vulnerability in calendar.php in WWWthreads allows remote attackers to inject arbitrary web script or HTML via the week parameter. | MEDIUM | 6.8 | Jul 27, 2006 |
| CVE-2006-1958 | Multiple SQL injection vulnerabilities in WWWThreads RC 3 allow remote attackers to execute arbitrary SQL commands via (1) the forumreferrer cookie to register… | MEDIUM | 6.4 | Apr 21, 2006 |
| CVE-2002-0223 | Infopop UBB.Threads 5.4 and Wired Community Software WWWThreads 5.0 through 5.0.9 allows remote attackers to upload arbitrary files by using a filename that co… | HIGH | 7.5 | May 3, 2002 |
| CVE-2000-0125 | wwwthreads does not properly cleanse numeric data or table names that are passed to SQL queries, which allows remote attackers to gain privileges for wwwthread… | HIGH | 7.5 | Feb 8, 2000 |
Showing 1 to 5 of 5 CVEs