CVE-2015-5534
- EPSS 2.33%
- Veröffentlicht 02.11.2015 19:59:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple cross-site request forgery (CSRF) vulnerabilities in Oxwall before 1.8 allow remote attackers to hijack the authentication of administrators for requests that (1) put the website under maintenance via the maintenance_enable parameter or (2) ...
CVE-2014-9101
- EPSS 2.43%
- Veröffentlicht 26.11.2014 15:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple cross-site request forgery (CSRF) vulnerabilities in Oxwall 1.7.0 (build 7907 and 7906) and SkaDate Lite 2.0 (build 7651) allow remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (X...
CVE-2012-4928
- EPSS 1.62%
- Veröffentlicht 15.09.2012 17:55:08
- Zuletzt bearbeitet 16.06.2026 23:45:55
Cross-site scripting (XSS) vulnerability in ow_updates/index.php in Oxwall 1.1.1 allows remote attackers to inject arbitrary web script or HTML via the plugin parameter.
CVE-2012-0872
- EPSS 1.37%
- Veröffentlicht 19.03.2012 19:55:03
- Zuletzt bearbeitet 16.06.2026 23:38:25
Multiple cross-site scripting (XSS) vulnerabilities in OxWall 1.1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) captchaField, (2) email, (3) form_name, (4) password, (5) realname, (6) repeatPassword, or (7) u...