Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xigla vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-2765
SQL injection vulnerability in gallery.asp in Xigla Absolute Image Gallery XE allows remote malicious users to execute arbitrary SQL commands via the categoryid parameter in a viewimage action.
Xigla Absolute Image Gallery Xe
NA
CVE-2008-2768
Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to inject arbitrary web script or HTML via unspecified vectors ("all fields").
Xigla Absolute Poll Manager Xe
NA
CVE-2007-6271
Absolute News Manager.NET 5.1 allows remote malicious users to obtain sensitive information via a direct request to getpath.aspx, which reveals the installation path in an error message.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
NA
CVE-2008-6862
Absolute Content Rotator 6.0 allows remote malicious users to bypass authentication and gain administrative access by setting a cookie to a certain value.
Xigla Absolute Content Rotator 6.0
1 EDB exploit
NA
CVE-2008-6856
Xigla Software Absolute News Manager.NET 5.1 allows remote malicious users to bypass authentication and gain administrative access by setting a cookie to a certain value.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
NA
CVE-2008-6858
Absolute Banner Manager .NET 4.0 allows remote malicious users to bypass authentication and gain administrative access by setting a cookie to a certain value.
Xigla Absolute Banner Manager.net 4.0
1 EDB exploit
NA
CVE-2008-6863
Xigla Software Absolute Form Processor .NET 4.0 allows remote malicious users to bypass authentication and gain administrative access by setting a cookie to a certain value.
Xigla Absolute Form Processor.net 4.0
1 EDB exploit
NA
CVE-2007-6291
SQL injection vulnerability in abm.aspx in Xigla Absolute Banner Manager .NET 4.0 allows remote malicious users to execute arbitrary SQL commands via the z parameter.
Xigla Absolute Banner Manager.net 4.0
NA
CVE-2006-1411
Cross-site scripting (XSS) vulnerability in Absolute Image Gallery XE 2.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via (1) the shownew parameter in gallery.asp and (2) unspecified search module parameters.
Xigla Absolute Image Gallery Xe
NA
CVE-2006-1416
Cross-site scripting (XSS) vulnerability in afmsearch.aspx in Absolute FAQ Manager .NET 4.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via unspecified search module parameters, possibly the question parameter.
Xigla Absolute Faq Manager .net
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »