Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Fix And Chips Computer Services Subscribe
Filtered by product Fix And Chips Cms
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-0146 1 Fix And Chips Computer Services 1 Fix And Chips Cms 2018-10-16 6.0 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Fix and Chips CMS 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in (a) delete-announce.php; the (2) Announcement form field in (b) staff.php; the (3) Client Name, (4) Business Name, (5) Street, (6) Address 2, (7) Town/City, (8) Postcode, (9) Phone Number, (10) Email Address and (11) Website Address form fields in (c) new_customer.php; and unspecified fields in (d) search.php and (e) client-results.php.