Skip to main content

Vendor/product archive

quirm / saxon CVEs

Beta · best-effort

3 CVEs tagged to quirm / saxon0 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2007-4861

Published Oct 30, 2007

SAXON 5.4, with display_errors enabled, allows remote attackers to obtain sensitive information via (1) a direct request for news.php, (2) an invalid use of a newsid array paramet…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4862

Published Oct 30, 2007

Cross-site scripting (XSS) vulnerability in admin/menu.php in SAXON 5.4 allows remote attackers to inject arbitrary web script or HTML via the config[news_url] parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4863

Published Oct 30, 2007

SQL injection vulnerability in example.php in SAXON 5.4 allows remote attackers to execute arbitrary SQL commands via the template parameter.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1