Vulnerabilities (CVE)

Filtered by vendor Cgiirc Subscribe
Filtered by product Cgi\
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-8920 1 Cgiirc 1 Cgi\ 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
irc.cgi in CGI:IRC before 0.5.12 reflects user-supplied input from the R parameter without proper output encoding, aka XSS.
CVE-2011-0050 1 Cgiirc 1 Cgi\ 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the nonjs interface (interfaces/nonjs.pm) in CGI:IRC before 0.5.10 allows remote attackers to inject arbitrary web script or HTML via the R parameter.