Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jaws jaws 0.3 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2004-2067
SQL injection vulnerability in controlpanel.php in Jaws Framework and Content Management System 0.4 allows remote malicious users to execute arbitrary SQL and bypass authentication via the (1) user, (2) password, or (3) crypted_password parameters.
Jaws Jaws 0.2
Jaws Jaws 0.3
Jaws Jaws 0.4
1 EDB exploit
NA
CVE-2005-1231
Cross-site scripting (XSS) vulnerability in the NewTerm function in GlossaryModel.php in JAWS 0.4 allows remote malicious users to inject arbitrary web script or HTML via the (1) term or (2) description.
Jaws Jaws 0.4
Jaws Jaws 0.5 Beta2
Jaws Jaws 0.3
NA
CVE-2004-2443
Jaws 0.3 allows remote malicious users to bypass authentication and via an HTTP request to admin.php with the logged cookie set to the MD5 hash of a null password, which is compared against the logged session variable by the logged_on function in application.php.
Jaws Jaws 0.3
Jaws Jaws 0.2
1 EDB exploit
NA
CVE-2004-2444
Cross-site scripting (XSS) vulnerability in index.php in Jaws 0.3 allows remote malicious users to inject arbitrary web script or HTML via the action parameter.
Jaws Jaws 0.3
1 EDB exploit
NA
CVE-2005-3955
Multiple cross-site scripting (XSS) vulnerabilities in MagpieRSS 7.1, as used in (a) blogBuddiesv 0.3, (b) Jaws 0.6.2, and possibly other products, allow remote malicious users to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (2) rss_ur...
Blogbuddies Blogbuddies 0.3
Jaws Jaws 0.6.2
Magpierss Magpierss 7.1
2 EDB exploits
NA
CVE-2004-2445
Directory traversal vulnerability in index.php in Jaws 0.3 BETA allows remote malicious users to view arbitrary files via a .. (dot dot) in the gadget parameter.
Jaws Jaws 0.3 Beta
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started