Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
web-app.org webapp 0.9.9.5 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2007-1188
WebAPP prior to 0.9.9.5 allows remote malicious users to submit Search form input that is not checked for (1) composition or (2) length, which has unknown impact, possibly related to "search form hijacking".
Web-app.org Webapp 0.9.9.1
Web-app.org Webapp 0.9.9.2
Web-app.org Webapp 0.9.9.2.1
Web-app.org Webapp 0.9.9.3
Web-app.org Webapp 0.9.9.3.1
Web-app.org Webapp 0.9.9.3.2
Web-app.org Webapp 0.9.9
Web-app.org Webapp 0.9.9.4
5.8
CVSSv2
CVE-2007-1177
WebAPP prior to 0.9.9.5 does not properly filter certain characters in contexts related to (1) the query string, (2) Profiles, (3) the Forum Post icon field, (4) the Edit Profile, and (5) the Gallery, which has unknown impact and remote attack vectors, possibly related to cross-s...
Web-app.org Webapp 0.9.9.3.1
Web-app.org Webapp 0.9.9.3.2
Web-app.org Webapp 0.9.9
Web-app.org Webapp 0.9.9.4
Web-app.org Webapp 0.9.9.1
Web-app.org Webapp 0.9.9.2
Web-app.org Webapp 0.9.9.2.1
Web-app.org Webapp 0.9.9.3
7.5
CVSSv2
CVE-2007-3242
The Menu Manager Mod for (1) web-app.net WebAPP (aka WebAPP NE) 0.9.9.3.3 up to and including 0.9.9.8, and (2) web-app.org WebAPP prior to 0.9.9.6, allows remote authenticated users to execute arbitrary commands via shell metacharacters in the titles of items in a personal menu.
Web-app.net Webapp 0.9.9.8
Web-app.org Webapp
Web-app.net Webapp 0.9.9.3.3
Web-app.net Webapp 0.9.9.3.4
Web-app.net Webapp 0.9.9.4
Web-app.net Webapp 0.9.9.5
Web-app.net Webapp 0.9.9.6
Web-app.net Webapp 0.9.9.7
7.5
CVSSv2
CVE-2007-1183
WebAPP prior to 0.9.9.5 allows remote authenticated users to spoof another user's Real Name via whitespace, which has unknown impact and attack vectors.
Web-app.org Webapp
4.3
CVSSv2
CVE-2007-1180
WebAPP prior to 0.9.9.5 does not check referrers in certain forms, which might facilitate remote cross-site request forgery (CSRF) attacks or have other unknown impact.
Web-app.org Webapp
7.5
CVSSv2
CVE-2007-1178
WebAPP prior to 0.9.9.5 does not check access in certain contexts related to (1) Calendar Administration, (2) Instant Messages Administration, and (3) the Image Uploader, which has unknown impact and attack vectors.
Web-app.org Webapp
4.3
CVSSv2
CVE-2007-1176
Multiple cross-site scripting (XSS) vulnerabilities in WebAPP prior to 0.9.9.5 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors related to (1) Gallery Comments pages, (2) Feedback pages, (3) Search Results pages, and (4) the Statistics L...
Web-app.org Webapp
5
CVSSv2
CVE-2007-1179
WebAPP prior to 0.9.9.5 does not properly manage e-mail addresses in certain contexts related to (1) the Recommend feature, Email Article (2) senders and (3) recipients, (4) New User Approval, (5) Edit Profiles, (6) the Newsletter Subscription form, (7) the Recommend form, and (8...
Web-app.org Webapp
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2