VYPR

Phpcards

by Phpcards

CVEs (2)

  • CVE-2006-5605Oct 30, 2006
    risk 0.00cvss epss 0.01

    Multiple cross-site scripting (XSS) vulnerabilities in phpcards.footer.php in phpCards 1.3 allow remote attackers to inject arbitrary web script or HTML via the CardFontFace parameter and other unspecified parameters.

  • CVE-2006-5604Oct 30, 2006
    risk 0.00cvss epss 0.01

    Directory traversal vulnerability in phpcards.header.php in phpCards 1.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the CardLanguageFile parameter.