Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Maian Script World Subscribe
Filtered by product Maian Uploader
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3321 1 Maian Script World 1 Maian Uploader 2017-10-18 7.5 HIGH N/A
admin/index.php in Maian Uploader 4.0 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary uploader_cookie cookie.
CVE-2014-10003 1 Maian Script World 1 Maian Uploader 2017-09-07 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Maian Uploader 4.0 allow remote attackers to inject arbitrary web script or HTML via the width parameter to (1) uploader/admin/js/load_flv.js.php or (2) uploader/js/load_flv.js.php.