Vulnerabilities (CVE)

Filtered by vendor Scriptsez Subscribe
Filtered by product Easy Image Downloader
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2551 1 Scriptsez 1 Easy Image Downloader 2024-02-28 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in ScriptsEz Easy Image Downloader allow remote attackers to inject arbitrary web script or HTML via the id parameter in a detail action to (1) main.php and possibly (2) demo_page.php.
CVE-2008-6089 1 Scriptsez 1 Easy Image Downloader 2024-02-28 5.0 MEDIUM N/A
Directory traversal vulnerability in main.php in ScriptsEz Easy Image Downloader allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter in a download action.