Skip to main content

Vendor archive

darrens_5-dollar_script_archive CVEs

Beta · best-effort

5 CVEs tagged to vendor darrens_5-dollar_script_archive0 Critical, 1 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2007-0834

Published Feb 7, 2007

Cross-site scripting (XSS) vulnerability in FlashChat 4.7.8 allows remote attackers to inject arbitrary web script or HTML via the user name field when the user joins a chat room,…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0807

Published Feb 7, 2007

Cross-site scripting (XSS) vulnerability in info.php in flashChat 4.7.8 allows remote attackers to inject arbitrary web script or HTML via a channel title (aka room name) that is…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4583

Published Sep 6, 2006

Multiple PHP remote file inclusion vulnerabilities in FlashChat before 4.6.2 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) inc/cm…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3766

Published Jul 21, 2006

Darren's $5 Script Archive osDate 1.1.7 and earlier allows users to boost their own ratings via a txtrating parameter with a score greater than the intended maximum of 10.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3767

Published Jul 21, 2006

Cross-site scripting (XSS) vulnerability in showprofile.php in Darren's $5 Script Archive osDate 1.1.7 and earlier allows remote attackers to inject arbitrary web script or HTML v…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1