VYPR

Trac

by Firestats

CVEs (2)

  • CVE-2008-2951MedJul 27, 2008
    risk 0.40cvss 6.1epss 0.01

    Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.

  • CVE-2009-4405Dec 23, 2009
    risk 0.00cvss epss 0.01

    Multiple unspecified vulnerabilities in Trac before 0.11.6 have unknown impact and attack vectors, possibly related to (1) "policy checks in report results when using alternate formats" or (2) a "check for the 'raw' role that is missing in docutils < 0.6."