VendorsSnitz Communicationssnitz_forums_20003.2.03
Vulnerabilities

Snitz Communications Snitz Forums 2000 3.2.03

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2002-0329
Cross-site scripting vulnerability in Snitz Forums 2000 3.3.03 and earlier allows remote attackers to execute arbitrary script as other Forums 2000 users via Javascript in an IMG tag.
Published 2003-04-02 · Modified
7.51 PoCEPSS 0.049
CVE-2008-0209
Open redirect vulnerability in Forums/login.asp in Snitz Forums 2000 3.4.06 and earlier allows remote attackers to redirect users to arbitrary web sites via a URL in the target parameter.
Published 2008-01-10 · Modified
5.8EPSS 0.011
CVE-2008-0135
Snitz Forums 2000 3.4.06 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for forum/snitz_forums_2000.mdb.
Published 2008-01-08 · Modified
5.01 PoCEPSS 0.025
CVE-2008-0208
Cross-site scripting (XSS) vulnerability in login.asp in Snitz Forums 2000 3.4.05 and earlier allows remote attackers to inject arbitrary web script or HTML via the target parameter.
Published 2008-01-10 · Modified
4.3EPSS 0.011
CVE-2008-0134
Cross-site scripting (XSS) vulnerability in Forums/setup.asp in Snitz Forums 2000 3.4.06 and earlier allows remote attackers to inject arbitrary web script or HTML via the MAIL parameter.
Published 2008-01-08 · Modified
4.3EPSS 0.011