Vulnerabilities
Vulnerable Software
Extrosoft:  >> Thyme  >> 1.3  Security Vulnerabilities
Cross-site scripting (XSS) vulnerability in add_calendars.php in eXtrovert Software Thyme 1.3 allows remote attackers to inject arbitrary web script or HTML via the callback parameter.
CVSS Score
4.3
EPSS Score
0.001
Published
2009-03-06
Directory traversal vulnerability in export.php in Thyme 1.3 and earlier, when register_globals is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the export_to parameter.
CVSS Score
7.5
EPSS Score
0.009
Published
2009-02-11
Cross-site scripting (XSS) vulnerability in Thyme 1.3 allows remote attackers to inject arbitrary web script or HTML via the search page.
CVSS Score
4.3
EPSS Score
0.006
Published
2006-05-01


Contact Us

Shodan ® - All rights reserved