Vulnerabilities (CVE)

Filtered by vendor Scriptsez Subscribe
Filtered by product Power Editor
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-2115 1 Scriptsez 1 Power Editor 2024-02-28 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in editor.php in ScriptsEZ.net Power Editor 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) te and (2) dir parameters in a tempedit action.
CVE-2008-2116 1 Scriptsez 1 Power Editor 2024-02-28 4.4 MEDIUM N/A
Multiple directory traversal vulnerabilities in editor.php in ScriptsEZ.net Power Editor 2.0 allow remote attackers to read arbitrary local files via a .. (dot dot) in the (1) te and (2) dir parameters in a tempedit action.