Vulnerabilities (CVE)

Filtered by vendor Built2go Subscribe
Filtered by product News Manager Blog
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-1248 1 Built2go 1 News Manager Blog 2024-11-21 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in built2go News Manager Blog 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) cid, (2) uid, and (3) nid parameters to (a) news.php, and the nid parameter to (b) rating.php.