Vulnerabilities (CVE)

Filtered by vendor Planetluc Subscribe
Filtered by product Rateme
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4898 1 Planetluc 1 Rateme 2024-02-28 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in planetluc RateMe 1.3.3 allows remote attackers to inject arbitrary web script or HTML via the rate parameter in a submit rate action.
CVE-2008-4899 1 Planetluc 1 Rateme 2024-02-28 6.8 MEDIUM N/A
Cross-site request forgery (CSRF) vulnerability in Planetluc RateMe 1.3.3 allows remote attackers to perform unauthorized actions as other users via unspecified vectors.