| OSVDB ID | Disclosure Date | Title |
|
20784
Description:
Unknown / Incomplete
|
2005-06-29
|
Exponent CMS filemanager Module Arbitrary PHP File Access
|
|
21022
Description:
Exponent CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'forms' created by the 'Form Generator'. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2005-11-19
|
Exponent CMS Form Generator Arbitrary Javascript XSS
|
|
38842
Description:
(Description Provided by CVE) : Exponent CMS 0.96.6 Alpha and earlier allows remote attackers to obtain path information via a direct request for (1) sdk/blanks/formcontrol.php and (2) sdk/blanks/file_modules.php.
|
2007-04-25
|
Exponent CMS formcontrol.php Direct Request Path Disclosure
|
|
20783
Description:
Unknown / Incomplete
|
2005-06-09
|
Exponent CMS Forms Arbitrary Script Injection
|
|
72242
Description:
Exponent CMS contains a flaw that allows a remote attacker to traverse outside of a restricted path. The issue is due to the framework/modules/pixidou/download.php script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied via the 'file' parameter. This directory traversal attack would allow the attacker to access arbitrary files.
|
2011-05-04
|
Exponent CMS framework/modules/pixidou/download.php file Parameter Traversal Arbitrary File Access
|
|
35051
Description:
(Description Provided by CVE) : Directory traversal vulnerability in iconspopup.php in Exponent CMS 0.96.6 Alpha and earlier allows remote attackers to obtain sensitive information via a .. (dot dot) in the icodir parameter.
|
2007-04-20
|
Exponent CMS iconspopup.php icodir Variable Traversal Arbitrary Directory Listing
|
|
20790
Description:
Exponent CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the mime type checking during uploads upon submission to the image gallery script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2005-08-31
|
Exponent CMS Image Gallery Preview Icon XSS
|
|
21025
Description:
Exponent contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the mime type on uploads upon submission to the 'Image Gallery' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2005-11-19
|
Exponent CMS Image Gallery Preview Icon XSS
|
|
21024
Description:
(Description Provided by CVE) : Exponent CMS 0.96.3 and later versions includes the full installation path in the base parameter to thumb.php, which allows remote attackers to obtain sensitive information. NOTE: this might be resultant from an absolute path traversal vulnerability.
|
2005-11-19
|
Exponent CMS Image Gallery thumb.php base Variable Path Disclosure
|
|
20793
Description:
Unknown / Incomplete
|
2005-11-08
|
Exponent CMS Image Upload Arbitrary PHP Code Execution
|
|
76989
Description:
Exponent CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-12-08
|
Exponent CMS index.php id Parameter SQL Injection
|
|
13188
Description:
Exponent CMS contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'module' variable upon submission to the 'index.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-01-25
|
Exponent CMS index.php module Parameter XSS
|
|
93447
Description:
Exponent CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'src' and 'username' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2013-05-15
|
Exponent CMS index.php Multiple Parameter SQL Injection
|
|
81327
Description:
Exponent CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'tag' and 'src' parameters upon submission to the index.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-04-23
|
Exponent CMS index.php Multiple Parameter XSS
|
|
20796
Description:
Exponent CMS contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'section' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-11
|
Exponent CMS index.php section Parameter SQL Injection
|
|
81326
Description:
Exponent CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'section' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-04-23
|
Exponent CMS index.php section Parameter SQL Injection
|
|
29024
Description:
Exponent CMS contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to the index.php script not properly sanitizing user input supplied to the 'view' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-09-20
|
Exponent CMS index.php view Parameter Local File Inclusion
|
|
21028
Description:
Exponent CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'URL' parameter upon submission to the installer. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2005-11-19
|
Exponent CMS Installer URL Parameter XSS
|
|
35640
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Exponent CMS 0.96.6 Alpha and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (b) magpie_simple.php in external/magpierss/scripts/, the (2) rss_url parameter to (c) magpie_slashbox.php in external/magpierss/scripts/, and the (3) body parameter to the (d) weblogmodule (aka Weblog Comments) module.
|
2007-04-27
|
Exponent CMS magpie_debug.php url Parameter XSS
|
|
35641
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Exponent CMS 0.96.6 Alpha and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (b) magpie_simple.php in external/magpierss/scripts/, the (2) rss_url parameter to (c) magpie_slashbox.php in external/magpierss/scripts/, and the (3) body parameter to the (d) weblogmodule (aka Weblog Comments) module.
|
2007-04-27
|
Exponent CMS magpie_simple.php url Parameter XSS
|
|
35642
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Exponent CMS 0.96.6 Alpha and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (b) magpie_simple.php in external/magpierss/scripts/, the (2) rss_url parameter to (c) magpie_slashbox.php in external/magpierss/scripts/, and the (3) body parameter to the (d) weblogmodule (aka Weblog Comments) module.
|
2007-04-27
|
Exponent CMS magpie_slashbox.php rss_url Parameter XSS
|
|
13190
Description:
Exponent CMS contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'module' variable upon submission to the 'mod.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-01-25
|
Exponent CMS mod.php module Parameter XSS
|
|
76990
Description:
Exponent CMS contains a flaw that allows a remote attacker to traverse outside of a restricted path. The issue is due to the mod_preview.php script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied via the 'module' parameter. This directory traversal attack would allow the attacker to access arbitrary files.
|
2010-10-14
|
Exponent CMS mod_preview.php module Parameter Traversal Arbitrary File Access
|
|
76991
Description:
Unknown / Incomplete
|
2010-10-14
|
Exponent CMS modules/filemanagermodule/actions/picker.php File Upload PHP Code Execution
|
|
76988
Description:
Exponent CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'u' parameter upon submission to the modules/slideshowmodule/slideshow.js.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-07-08
|
Exponent CMS modules/slideshowmodule/slideshow.js.php u Parameter XSS
|
|
13189
Description:
(Description Provided by CVE) : Exponent 0.95 allows remote attackers to obtain sensitive information via a direct HTTP request to (1) search.info.php, (2) permissions.info.php, (3) security.info.php, (4) formcontrol.php, or (5) file_modules.php, which reveals the path in an error message because the pathos_core_version variable is undefined.
|
2005-01-25
|
Exponent CMS Multiple Script pathos_core_version Variable Path Disclosure
|
|
20786
Description:
Unknown / Incomplete
|
2005-06-30
|
Exponent CMS Navigation Module parent Parameter SQL Injection
|
|
21023
Description:
Exponent CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the Navigation Module not properly sanitizing user-supplied input to the 'parent' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-19
|
Exponent CMS Navigation Module parent Parameter SQL Injection
|
|
20779
Description:
Unknown / Incomplete
|
2005-02-04
|
Exponent CMS Password Reset Arbitrary User Password Modification
|
|
69692
Description:
Exponent CMS contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the podcast.php script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied to the 'module' parameter. This may allow an attacker to include a file from the targeted host that contains arbitrary commands or code that will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system accessible by the web server.
|
2010-12-06
|
Exponent CMS podcast.php module Parameter Traversal Local File Inclusion
|