phpkobo ajaxnewsticker CVE Vulnerabilities (9)

CVEs: 9 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting phpkobo ajaxnewsticker (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 19 of 9 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-41450 An issue in phpkobo AjaxNewsTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the reque parameter. [email protected] 8.8 3.02% 2023-09-28 2024-11-21
CVE-2023-41447 Cross Site Scripting vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the subcmd parameter in the index.php component. [email protected] 6.1 0.67% 2023-09-28 2024-11-21
CVE-2023-41446 Cross Site Scripting vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted script to the title parameter in the index.php component. [email protected] 6.1 0.67% 2023-09-28 2024-11-21
CVE-2023-41453 Cross Site Scripting vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the cmd parameter in the index.php component. [email protected] 6.1 0.90% 2023-09-27 2024-11-21
CVE-2023-41452 Cross Site Request Forgery vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the txt parameter in the index.php component. [email protected] 8.8 4.36% 2023-09-27 2024-11-21
CVE-2023-41451 Cross Site Scripting vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the txt parameter in the index.php component. [email protected] 6.1 0.67% 2023-09-27 2024-11-21
CVE-2023-41449 An issue in phpkobo AjaxNewsTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the reque parameter. [email protected] 9.8 5.07% 2023-09-27 2024-11-21
CVE-2023-41448 Cross Site Scripting vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the ID parameter in the index.php component. [email protected] 6.1 0.80% 2023-09-27 2024-11-21
CVE-2023-41445 Cross Site Scripting vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the index.php component. [email protected] 6.1 0.67% 2023-09-27 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence