Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xoops xoops 2.0.17.1 vulnerabilities and exploits
(subscribe to this query)
755
VMScore
CVE-2007-5978
SQL injection vulnerability in brokenlink.php in the mylinks module for XOOPS allows remote malicious users to execute arbitrary SQL commands via the lid parameter.
Xoops Mylinks Module 2.0.17.1
1 EDB exploit
383
VMScore
CVE-2011-4565
Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.5.1.a, and possibly earlier versions, allow remote malicious users to inject arbitrary web script or HTML via the (1) text parameter to include/formdhtmltextarea_preview.php or (2) img BBCODE tag within the message pa...
Xoops Xoops 2.0.2
Xoops Xoops 2.5.0
Xoops Xoops 2.3.3b
Xoops Xoops 2.3.3
Xoops Xoops 2.0.18.1
Xoops Xoops 2.0.18
Xoops Xoops 2.0.14
Xoops Xoops
Xoops Xoops 2.5.1
Xoops Xoops 2.4.1
Xoops Xoops 2.4.0
Xoops Xoops 2.0.18.2
Xoops Xoops 2.0.17
Xoops Xoops 2.0.16
Xoops Xoops 2.0.15
Xoops Xoops 2.4.5
Xoops Xoops 2.4.4
Xoops Xoops 2.3.2b
Xoops Xoops 2.3.2a
Xoops Xoops 2.0.17.1
Xoops Xoops 2.0.13.2
Xoops Xoops 2.4.3
668
VMScore
CVE-2009-3963
Multiple unspecified vulnerabilities in XOOPS prior to 2.4.0 Final have unknown impact and attack vectors.
Xoops Xoops 2.0.13.2
Xoops Xoops 2.0.13.1
Xoops Xoops 2.0.4
Xoops Xoops 2.0.18.1
Xoops Xoops 2.0.18
Xoops Xoops 2.3.2a
Xoops Xoops 2.2.3
Xoops Xoops 2.0.17.1
Xoops Xoops 2.0.11
Xoops Xoops 2.0.12 Jp
Xoops Xoops 2.0.2
Xoops Xoops 2.0.6
Xoops Xoops 2.0.9.3
Xoops Xoops 2.0.9.2
Xoops Xoops 2.0.1
Xoops Xoops 2.0.10
Xoops Xoops 2.0.3
Xoops Xoops 2.0.17 1
Xoops Xoops 2.3.1
Xoops Xoops 2.0.7
Xoops Xoops 2.0.16
Xoops Xoops 2.0.14
445
VMScore
CVE-2009-4851
The activation resend function in the Profiles module in XOOPS prior to 2.4.1 sends activation codes in response to arbitrary activation requests, which allows remote malicious users to bypass administrative approval via a request involving activate.php.
Xoops Xoops 1.0
Xoops Xoops 1.0 Rc3
Xoops Xoops 1.3.10
Xoops Xoops 1.3.9
Xoops Xoops 2.0.0 Rc2
Xoops Xoops 2.0.5 Rc
Xoops Xoops 2.0.5.2
Xoops Xoops 2.0.9.2
Xoops Xoops 2.0.10 Rc
Xoops Xoops 2.0.13
Xoops Xoops 2.0.13.2
Xoops Xoops 2.0.18
Xoops Xoops 2.3.0 Alpha1
Xoops Xoops 2.3.0
Xoops Xoops 2.3.1
Xoops Xoops 2.4.0 Beta 2
Xoops Xoops
Xoops Xoops 1.3.5
Xoops Xoops 1.3.6
Xoops Xoops 1.3.7
Xoops Xoops 1.3.8
Xoops Xoops 2.0.6
668
VMScore
CVE-2007-5188
Unspecified vulnerability in the XOOPS uploader class in Xoops 2.0.17.1-RC1 and previous versions allows remote malicious users to upload arbitrary files via unspecified vectors related to improper upload configuration settings in class/uploader.php and class/mimetypes.inc.php, p...
Xoops Xoops
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started