Vulnerabilities
Vulnerable Software
Openbiblio:  >> Openbiblio  >> 0.3  Security Vulnerabilities
OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain sensitive information via a direct request for (1) shared/footer.php, (2) circ/mbr_fields.php, or (3) admin/custom_marc_form_fields.php, which reveals the path in various error messages.
CVSS Score
5.0
EPSS Score
0.004
Published
2007-12-31
Multiple cross-site scripting (XSS) vulnerabilities in OpenBiblio 0.5.2-pre4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) LAST and (2) FIRST parameters to admin/staff_del_confirm.php, (3) the name parameter to admin/theme_del_confirm.php, or (4) the themeName parameter to admin/theme_preview.php.
CVSS Score
4.3
EPSS Score
0.014
Published
2007-12-31
Unspecified vulnerability in the reports system in OpenBiblio before 0.6.0 allows attackers to gain privileges via unspecified vectors.
CVSS Score
7.5
EPSS Score
0.004
Published
2007-03-03


Contact Us

Shodan ® - All rights reserved