Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jax scripts vulnerabilities and exploits
(subscribe to this query)
435
VMScore
CVE-2005-4879
Multiple cross-site scripting (XSS) vulnerabilities in jax_guestbook.php in Jax Guestbook 3.1 and 3.31 allow remote malicious users to inject arbitrary web script or HTML via the (1) gmt_ofs and (2) language parameters. NOTE: the page parameter is already covered by CVE-2006-1913...
Jax Scripts Jax Guestbook 3.31
Jax Scripts Jax Guestbook 3.1
1 EDB exploit
520
VMScore
CVE-2005-4880
Jax Guestbook 3.1 and 3.31 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to obtain IP addresses of users via a direct request to (1) guestbook, (2) guestbook_ips2block, (3) ips2block, and (4) formmailer/logfi...
Jax Scripts Jax Guestbook 3.3.1
Jax Scripts Jax Guestbook 3.1
4 EDB exploits
685
VMScore
CVE-2006-1913
Cross-site scripting (XSS) vulnerability in jax_guestbook.php in Jax Guestbook 3.1, 3.31, and 3.50 allows remote malicious users to inject arbitrary web script or HTML via the page parameter.
Jax Scripts Jax Guestbook
1 EDB exploit
755
VMScore
CVE-2009-4447
Jax Guestbook 3.5.0 allows remote malicious users to bypass authentication and modify administrator settings via a direct request to admin/guestbook.admin.php.
Jax Scripts Jax Guestbook 3.5.0
1 EDB exploit
440
VMScore
CVE-2008-6562
Cross-site scripting (XSS) vulnerability in jax_linklists.php in Jack (tR) Jax LinkLists 1.00 allows remote malicious users to inject arbitrary web script or HTML via the cat parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from thir...
Jax Scripts Jax Linklists 1.00
2 EDB exploits
690
VMScore
CVE-2007-0335
Multiple directory traversal vulnerabilities in Jax Petition Book 1.0.3.06 allow remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the languagepack parameter to (1) jax_petitionbook.php or (2) smileys.php.
Jax Scripts Jax Petition Book 1.0.3.06
2 EDB exploits
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
encryption
CVE-2024-4331
CVE-2024-26925
arbitrary code
CVE-2006-4304
CVE-2024-25458
CVE-2024-27077
reflected XSS
CVE-2024-4059
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started