VendorsPostnuke Software Foundationpostnuke0.764
Vulnerabilities

Postnuke Software Foundation Postnuke 0.764

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2007-0386
Unspecified vulnerability in the rating section in PostNuke 0.764 has unknown impact and attack vectors, related to "an interesting bug."
Published 2007-01-19 · Modified
10.0EPSS 0.015
CVE-2007-0385
The faq section in PostNuke 0.764 allows remote attackers to obtain sensitive information (the full path) via "unvalidated output" in FAQ/index.php, possibly involving an undefined id_cat variable.
Published 2007-01-19 · Modified
7.8EPSS 0.015
CVE-2007-0384
Cross-site scripting (XSS) vulnerability in preview in the reviews section in PostNuke 0.764 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2007-01-19 · Modified
5.1EPSS 0.012