|
210731
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-template.php by adding a question mar…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10398
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210732
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-news.php by adding a question mark (?…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10397
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210733
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-language.php by adding a question mar…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10396
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210734
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-group.php by adding a question mark (…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10395
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210735
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-glossary.php by adding a question mar…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10394
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210736
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-field.php by adding a question mark (…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10393
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210737
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-category.php by adding a question mar…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10392
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210738
|
4.8 |
MEDIUM
Network
|
chadhaajay
|
phpkb
|
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-article.php by adding a question mark…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10391
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210739
|
7.2 |
HIGH
Network
|
chadhaajay
|
phpkb
|
OS Command Injection in export.php (vulnerable function called from include/functions-article.php) in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by savin…
|
CWE-78
OS Command
|
CVE-2020-10390
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210740
|
7.2 |
HIGH
Network
|
chadhaajay
|
phpkb
|
admin/save-settings.php in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by injecting PHP code into any POST parameter when saving global settings.
|
CWE-94
Code Injection
|
CVE-2020-10389
|
2024-11-21 13:55 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|