VYPR

Mysource Classic

by Squiz

CVEs (2)

  • CVE-2006-5036Sep 27, 2006
    risk 0.00cvss epss 0.01

    MySource Matrix 3.8 and earlier, and MySource 2.x, allow remote attackers to use the application as an HTTP proxy server via the sq_remote_page_url parameter to access arbitrary sites with the server's IP address and conduct cross-site scripting (XSS) attacks. NOTE: the…

  • CVE-2006-4635Sep 8, 2006
    risk 0.00cvss epss 0.01

    Unspecified vulnerability in MySource Classic 2.14.6, and possibly earlier, allows remote authenticated users, with superuser privileges, to inject arbitrary PHP code via unspecified vectors related to the Equation attribute in Web_Extensions - Notitia (I/II). NOTE: due to lack…