Vulnerabilities (CVE)

Filtered by vendor Ozjournals Subscribe
Filtered by product Ozjournals
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-0435 1 Ozjournals 1 Ozjournals 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in index.php in OZJournals 2.1.1 allows remote attackers to read portions of arbitrary files via a .. (dot dot) in the id parameter in a printpreview action.
CVE-2006-2390 1 Ozjournals 1 Ozjournals 2024-02-04 5.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in OZJournals 1.2 allows remote attackers to inject arbitrary web script or HTML via the vname parameter in the comments functionality.
CVE-2006-4069 1 Ozjournals 1 Ozjournals 2024-02-04 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Elaine Aquino Online Zone Journals (OZJournals) 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) m and (2) c parameters in index.php, (3) a search action, and (4) a "submit comment" action.
CVE-2006-4086 1 Ozjournals 1 Ozjournals 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in index.php in Elaine Aquino Online Zone Journals (OZJournals) 1.5 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.