VYPR

Tmspublisher

by The Media Shoppe Berhad

CVEs (2)

  • CVE-2005-4721Dec 31, 2005
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in search.cfm in tmsPUBLISHER 3.3 allows remote attackers to inject arbitrary web script or HTML via the q parameter.

  • CVE-2005-4722Dec 31, 2005
    risk 0.00cvss epss 0.00

    _Request_Message.cfm in tmsPUBLISHER 3.3 allows remote attackers to obtain sensitive information via an invalid id argument to pagename.cfm, which reveals the installation path in an error message.