Skip to main content

Vendor/product archive

eric_fichot / downfile CVEs

Beta · best-effort

2 CVEs tagged to eric_fichot / downfile0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2005-2818

Published Sep 7, 2005

Cross-site scripting (XSS) vulnerability in DownFile 1.3 allows remote attackers to inject arbitrary web script or HTML via the id parameter to (1) email.php,(2) index.php, (3) de…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2819

Published Sep 7, 2005

DownFile 1.3 allows remote attackers to gain administrator privileges via a direct request to (1) update.php, (2) del.php, and (3) add_form.php.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1