VYPR

Phpinv

by Phpinv

CVEs (2)

  • CVE-2008-2694Jun 13, 2008
    risk 0.03cvss epss 0.03

    Cross-site scripting (XSS) vulnerability in search.php in phpInv 0.8.0 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.

  • CVE-2008-2695Jun 13, 2008
    risk 0.03cvss epss 0.03

    Directory traversal vulnerability in entry.php in phpInv 0.8.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter.