Skip to main content

Vendor archive

torrentflux_project CVEs

Beta · best-effort

4 CVEs tagged to vendor torrentflux_project0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2014-6027

Published Jan 16, 2018

Multiple cross-site scripting (XSS) vulnerabilities in TorrentFlux 2.4 allow (1) remote attackers to inject arbitrary web script or HTML by leveraging failure to encode file conte…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-6029

Published Sep 5, 2014

TorrentFlux 2.4 allows remote authenticated users to delete or modify other users' cookies via the cid parameter in an editCookies action to profile.php.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-6028

Published Sep 5, 2014

TorrentFlux 2.4 allows remote authenticated users to obtain other users' cookies via the cid parameter in an editCookies action to profile.php.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1