VendorsFlowPaperflexpaperall versions
Vulnerabilities

FlowPaper FlexPaper

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2018-11686
The Publish Service in FlexPaper (later renamed FlowPaper) 2.3.6 allows remote code execution via setup.php and change_config.php.
Published 2019-07-03 · Modified
9.81 PoCEPSS 0.525
CVE-2014-9677
Cross-site scripting (XSS) vulnerability in FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the Swfile parameter.
Published 2017-10-17 · Modified
6.1EPSS 0.012
CVE-2014-9678
FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to conduct content-spoofing attacks via the Swfile parameter.
Published 2017-10-17 · Modified
6.1EPSS 0.010