VYPR
Vendor
Products
2
CVEs
3
Across products
333
Status
Private

Products

2

Recent CVEs

3
CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2008-47980.000.05Oct 30, 2008The loadModule function in lib/WebGUI/Asset.pm in WebGUI before 7.5.30 (stable) allows remote attackers to execute arbitrary code by uploading a Perl module and accessing it via a crafted URL.
CVE-2008-35030.000.00Aug 6, 2008RSSFromParent in Plain Black WebGUI before 7.5.13 does not restrict view access to Collaboration System (CS) RSS feeds, which allows remote attackers to obtain sensitive information (CS data).
CVE-2008-09400.000.00Feb 25, 2008Cross-site scripting (XSS) vulnerability in Plain Black WebGUI before 7.4.24 allows remote attackers to inject arbitrary web script or HTML when creating a username, a different vulnerability than CVE-2007-0407.