VYPR

eXtreme Styles module (XS-Mod)

by PhpBB

CVEs (2)

  • CVE-2008-1512Mar 25, 2008
    risk 0.03cvss epss 0.02

    Directory traversal vulnerability in admin/admin_xs.php in eXtreme Styles module (XS-Mod) 2.3.1 and 2.4.0 for phpBB allows remote attackers to include and execute arbitrary files via a .. (dot dot) in the phpEx parameter. NOTE: some of these details are obtained from third party…

  • CVE-2005-4084Dec 8, 2005
    risk 0.00cvss epss 0.01

    xs_edit.php in the phpBB eXtreme Styles module 2.2.1 and earlier allows remote attackers to obtain the installation path of the application via an invalid viewbackup parameter.