Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2004-1470 | 1 Snipsnap | 1 Snipsnap | 2017-07-10 | 5.0 MEDIUM | N/A |
CRLF injection vulnerability in SnipSnap 0.5.2a, and other versions before 1.0b1, allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server. | |||||
CVE-2014-9559 | 1 Snipsnap | 1 Snipsnap | 2015-02-03 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in SnipSnap 0.5.2a, 1.0b1, and 1.0b2 allows remote attackers to inject arbitrary web script or HTML via the query parameter to /snipsnap-search. |