VendorsXiglaabsolute_control_panel_xeall versions
Vulnerabilities

Xigla Absolute Control Panel Xe

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2008-6859
Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.
Published 2009-07-14 · Modified
7.51 PoCEPSS 0.025
CVE-2009-1504
Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin cookie to "lvl=1&userid=1."
Published 2009-05-01 · Modified
7.51 PoCEPSS 0.024
CVE-2008-2756
Cross-site scripting (XSS) vulnerability in admin/users.asp in Xigla Absolute Control Panel XE 1.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter and other unspecified parameters. NOTE: some of these details are obtained from third party information.
Published 2008-06-18 · Modified
4.3EPSS 0.013