VYPR

Expandable Home Page CMS

by Laurentiu Matei

CVEs (2)

  • CVE-2006-4751Sep 13, 2006
    risk 0.03cvss epss 0.02

    Cross-site scripting (XSS) vulnerability in index.php in Laurentiu Matei eXpandable Home Page (XHP) CMS 0.5.1 allows remote attackers to inject arbitrary web script or HTML via the errcode parameter.

  • CVE-2006-4752Sep 13, 2006
    risk 0.00cvss epss 0.02

    Laurentiu Matei eXpandable Home Page (XHP) CMS 0.5.1 allows remote attackers to obtain the installation path via a query to the engine module, probably with an invalid action parameter.