Vulnerabilities (CVE)

Filtered by vendor Jamwiki Subscribe
Filtered by product Jamwiki
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-5054 1 Jamwiki 1 Jamwiki 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Special:Login in JAMWiki before 0.8.4 allows remote attackers to inject arbitrary web script or HTML via the message parameter.
CVE-2007-0131 1 Jamwiki 1 Jamwiki 2024-02-04 7.5 HIGH N/A
JAMWiki before 0.5.0 does not properly check permissions during moves of "read-only or admin-only topics," which allows remote attackers to make unauthorized changes to the wiki.