Vulnerabilities (CVE)

Filtered by vendor The Collective Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-4745 1 The Collective 1 Acuity Cms 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in admin/login.asp in Acuity CMS 2.6.2 allows remote attackers to inject arbitrary web script or HTML via the UserName parameter.
CVE-2005-4369 1 The Collective 1 Acuity Cms 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Acuity CMS 2.6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly strSearchKeywords to browse.asp.