CVE ID | Publié | Description | Score | Gravité |
---|---|---|---|---|
An issue in the SpreadSheetPlugin component of Foswiki v2.1.7 and below allows attackers to execute a directory traversal. | 7.5 |
Haute |
||
Foswiki before 1.1.8 contains a code injection vulnerability in the MAKETEXT macro. | 9.8 |
Critique |
||
The localization functionality in TWiki before 5.1.3, and Foswiki 1.0.x through 1.0.10 and 1.1.x through 1.1.6, allows remote attackers to cause a denial of service (memory consumption) via a large integer in a %MAKETEXT% macro. | 5 |
|||
Multiple cross-site scripting (XSS) vulnerabilities in JumpBox before 1.1.2 for Foswiki Wiki System allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 4.3 |