Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ricardo Alexandre De Oliveira Staudt Subscribe
Filtered by product Yogurt
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2033 1 Ricardo Alexandre De Oliveira Staudt 1 Yogurt 2017-09-28 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in index.php in Yogurt 0.3 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
CVE-2009-2034 1 Ricardo Alexandre De Oliveira Staudt 1 Yogurt 2017-09-28 6.0 MEDIUM N/A
SQL injection vulnerability in writemessage.php in Yogurt 0.3, when register_globals is enabled, allows remote authenticated users to execute arbitrary SQL commands via the original parameter.