Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
winn vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2011-5026
Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook prior to 2.4.8d allows remote malicious users to inject arbitrary web script or HTML via the name parameter to index.php. NOTE: some of these details are obtained from third p...
Winn Winn Guestbook
Winn Winn Guestbook 2.4.2
Winn Winn Guestbook 2.4.1
Winn Winn Guestbook 2.4.6
Winn Winn Guestbook 2.4.5
Winn Winn Guestbook 2.4.4
Winn Winn Guestbook 2.4.3
Winn Winn Guestbook 2.4.8b
Winn Winn Guestbook 2.4.7
1 EDB exploit
4.3
CVSSv2
CVE-2009-4678
Cross-site scripting (XSS) vulnerability in index.php in Winn Guestbook 2.4 allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO.
Winn Winn Guestbook 2.4
1 EDB exploit
5
CVSSv2
CVE-2009-4760
Winn ASP Guestbook 1.01 Beta stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for data/guestbook.mdb.
Winn Asp Guestbook 1.01
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-3675
CVE-2024-3400
CVE-2024-23557
mass assignment
CVE-2023-1389
local file inclusion
CVE-2024-32596
file upload
CVE-2024-32593
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started