Vulnerabilities
Vulnerable Software
Jupiter Cms:  Security Vulnerabilities
Directory traversal vulnerability in index.php in Jupiter CMS 1.1.4 and 1.1.5 allows remote attackers to read arbitrary files via ".." sequences terminated by a %00 (null) character in the n parameter.
CVSS Score
5.0
EPSS Score
0.003
Published
2006-04-29
Cross-site scripting (XSS) vulnerability in modules/online.php in Jupiter CMS 1.1.5 allows remote attackers to inject arbitrary web script or HTML via the layout parameter to index.php.
CVSS Score
4.3
EPSS Score
0.012
Published
2006-04-11
Jupiter CMS 1.1.5, when display_errors is enabled, allows remote attackers to obtain the full server path via a direct request to modules/online.php.
CVSS Score
2.6
EPSS Score
0.004
Published
2006-04-11
Cross-site scripting (XSS) vulnerability in Jupiter Content Manager 1.1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a Javascript URI in the image BBcode tag.
CVSS Score
4.3
EPSS Score
0.103
Published
2006-03-14


Contact Us

Shodan ® - All rights reserved