VYPR

Travelsized CMS

by Dan Jensen

CVEs (2)

  • CVE-2006-5182Oct 10, 2006
    risk 0.04cvss epss 0.08

    PHP remote file inclusion vulnerability in frontpage.php in Dan Jensen Travelsized CMS 0.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the setup_folder parameter.

  • CVE-2006-6037Nov 22, 2006
    risk 0.00cvss epss 0.02

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dan Jensen Travelsized CMS 0.4.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) page, (2) page_id, or (3) language parameter.