Vulnerabilities (CVE)

Filtered by vendor Pineapple Technologies Subscribe
Filtered by product Quizshock
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-1905 1 Pineapple Technologies 1 Quizshock 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in auth.php in Pineapple Technologies QuizShock 1.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via encoded special characters in the forward_to parameter, as demonstrated using "<"<".