Vulnerabilities (CVE)

Filtered by vendor The Media Shoppe Berhad Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-4721 1 The Media Shoppe Berhad 1 Tmspublisher 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in search.cfm in tmsPUBLISHER 3.3 allows remote attackers to inject arbitrary web script or HTML via the q parameter.
CVE-2005-4722 1 The Media Shoppe Berhad 1 Tmspublisher 2024-02-04 5.0 MEDIUM N/A
_Request_Message.cfm in tmsPUBLISHER 3.3 allows remote attackers to obtain sensitive information via an invalid id argument to pagename.cfm, which reveals the installation path in an error message.