Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xigla vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2008-2766
Cross-site scripting (XSS) vulnerability in Xigla Absolute Image Gallery XE allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors in (1) admin/search.asp and (2) gallery.asp.
Xigla Absolute Image Gallery Xe
755
VMScore
CVE-2007-6269
Multiple SQL injection vulnerabilities in xlaabsolutenm.aspx in Absolute News Manager.NET 5.1 allow remote malicious users to execute arbitrary SQL commands via the (1) z, (2) pz, (3) ord, and (4) sort parameters.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
440
VMScore
CVE-2007-6270
Multiple cross-site scripting (XSS) vulnerabilities in Absolute News Manager.NET 5.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) rmore parameter to xlaabsolutenm.aspx and the (2) template parameter to pages/default.aspx.
Xigla Absolute News Manager.net 5.1
2 EDB exploits
505
VMScore
CVE-2007-6271
Absolute News Manager.NET 5.1 allows remote malicious users to obtain sensitive information via a direct request to getpath.aspx, which reveals the installation path in an error message.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
505
VMScore
CVE-2007-6268
Directory traversal vulnerability in pages/default.aspx in Absolute News Manager.NET 5.1 allows remote malicious users to read arbitrary files via a .. (dot dot) in the template parameter.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
578
VMScore
CVE-2008-2760
SQL injection vulnerability in searchbanners.asp in Xigla Absolute Banner Manager XE 2.0 allows remote authenticated administrators to execute arbitrary SQL commands via the orderby parameter.
Xigla Absolute Banner Manager 2.0
578
VMScore
CVE-2008-2767
SQL injection vulnerability in search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to execute arbitrary SQL commands via the orderby parameter.
Xigla Absolute Poll Manager Xe
312
VMScore
CVE-2008-2768
Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to inject arbitrary web script or HTML via unspecified vectors ("all fields").
Xigla Absolute Poll Manager Xe
383
VMScore
CVE-2006-1411
Cross-site scripting (XSS) vulnerability in Absolute Image Gallery XE 2.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via (1) the shownew parameter in gallery.asp and (2) unspecified search module parameters.
Xigla Absolute Image Gallery Xe
383
VMScore
CVE-2006-1416
Cross-site scripting (XSS) vulnerability in afmsearch.aspx in Absolute FAQ Manager .NET 4.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via unspecified search module parameters, possibly the question parameter.
Xigla Absolute Faq Manager .net
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
spoof
CVE-2024-34928
CVE-2024-5291
deserialization
CVE-2024-4471
CVE-2024-4956
CVE-2024-32002
CVE-2024-5227
unspecified
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »