Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xoops xoops 2.0.18.1 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2008-3295
Cross-site scripting (XSS) vulnerability in modules/system/admin.php in XOOPS 2.0.18.1 allows remote malicious users to inject arbitrary web script or HTML via the fct parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party...
Xoops Xoops 2.0.18.1
1 EDB exploit
7.5
CVSSv2
CVE-2008-3296
Directory traversal vulnerability in modules/system/admin.php in XOOPS 2.0.18 1 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the fct parameter. NOTE: the provenance of this information is unknown; the details are obtained solely...
Xoops Xoops 2.0.18.1
1 EDB exploit
4.3
CVSSv2
CVE-2011-4565
Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.5.1.a, and possibly earlier versions, allow remote malicious users to inject arbitrary web script or HTML via the (1) text parameter to include/formdhtmltextarea_preview.php or (2) img BBCODE tag within the message pa...
Xoops Xoops 2.0.2
Xoops Xoops 2.5.0
Xoops Xoops 2.3.3b
Xoops Xoops 2.3.3
Xoops Xoops 2.0.18.1
Xoops Xoops 2.0.18
Xoops Xoops 2.0.14
Xoops Xoops
Xoops Xoops 2.5.1
Xoops Xoops 2.4.1
Xoops Xoops 2.4.0
Xoops Xoops 2.0.18.2
Xoops Xoops 2.0.17
Xoops Xoops 2.0.16
Xoops Xoops 2.0.15
Xoops Xoops 2.4.5
Xoops Xoops 2.4.4
Xoops Xoops 2.3.2b
Xoops Xoops 2.3.2a
Xoops Xoops 2.0.17.1
Xoops Xoops 2.0.13.2
Xoops Xoops 2.4.3
7.5
CVSSv2
CVE-2009-3963
Multiple unspecified vulnerabilities in XOOPS prior to 2.4.0 Final have unknown impact and attack vectors.
Xoops Xoops 2.0.13.2
Xoops Xoops 2.0.13.1
Xoops Xoops 2.0.4
Xoops Xoops 2.0.18.1
Xoops Xoops 2.0.18
Xoops Xoops 2.3.2a
Xoops Xoops 2.2.3
Xoops Xoops 2.0.17.1
Xoops Xoops 2.0.11
Xoops Xoops 2.0.12 Jp
Xoops Xoops 2.0.2
Xoops Xoops 2.0.6
Xoops Xoops 2.0.9.3
Xoops Xoops 2.0.9.2
Xoops Xoops 2.0.1
Xoops Xoops 2.0.10
Xoops Xoops 2.0.3
Xoops Xoops 2.0.17 1
Xoops Xoops 2.3.1
Xoops Xoops 2.0.7
Xoops Xoops 2.0.16
Xoops Xoops 2.0.14
5
CVSSv2
CVE-2009-4851
The activation resend function in the Profiles module in XOOPS prior to 2.4.1 sends activation codes in response to arbitrary activation requests, which allows remote malicious users to bypass administrative approval via a request involving activate.php.
Xoops Xoops 1.0
Xoops Xoops 1.0 Rc3
Xoops Xoops 1.3.10
Xoops Xoops 1.3.9
Xoops Xoops 2.0.0 Rc2
Xoops Xoops 2.0.5 Rc
Xoops Xoops 2.0.5.2
Xoops Xoops 2.0.9.2
Xoops Xoops 2.0.10 Rc
Xoops Xoops 2.0.13
Xoops Xoops 2.0.13.2
Xoops Xoops 2.0.18
Xoops Xoops 2.3.0 Alpha1
Xoops Xoops 2.3.0
Xoops Xoops 2.3.1
Xoops Xoops 2.4.0 Beta 2
Xoops Xoops
Xoops Xoops 1.3.5
Xoops Xoops 1.3.6
Xoops Xoops 1.3.7
Xoops Xoops 1.3.8
Xoops Xoops 2.0.6
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-52710
arbitrary
CVE-2024-5272
CVE-2024-2961
brute force
remote
CVE-2024-32944
CVE-2024-36241
CVE-2024-5274
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started