VendorsKasseler-cmskasseler_cms1.3.0
Vulnerabilities

Kasseler-cms Kasseler CMS 1.3.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2008-3087
Directory traversal vulnerability in Kasseler CMS 1.3.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to index.php, possibly related to the phpManual module.
Published 2008-07-09 · Modified
5.01 PoCEPSS 0.029
CVE-2008-3088
Cross-site scripting (XSS) vulnerability in the Files module in Kasseler CMS 1.3.0 and 1.3.1 Lite allows remote attackers to inject arbitrary web script or HTML via the cid parameter in a Category action to index.php.
Published 2008-07-09 · Modified
4.31 PoCEPSS 0.015