Skip to main content

Vendor/product archive

fusetalk / fusetalk CVEs

Beta · best-effort

6 CVEs tagged to fusetalk / fusetalk0 Critical, 3 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2012-5295

Published Oct 4, 2012

Cross-site scripting (XSS) vulnerability in login.cfm in FuseTalk Forums 3.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the windowed parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-3705

Published Jul 11, 2007

SQL injection vulnerability in FuseTalk 2.0 allows remote attackers to execute arbitrary SQL commands via the FTVAR_SUBCAT (txForumID) parameter to forum/index.cfm and possibly ot…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-3339

Published Jun 21, 2007

Multiple cross-site scripting (XSS) vulnerabilities in forum/include/error/autherror.cfm in FuseTalk Basic, Standard, Enterprise, and ColdFusion allow remote attackers to inject a…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-3301

Published Jun 20, 2007

SQL injection vulnerability in forum/include/error/autherror.cfm in FuseTalk allows remote attackers to execute arbitrary SQL commands via the errorcode parameter. NOTE: a patch…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-3273

Published Jun 19, 2007

SQL injection vulnerability in index.cfm in FuseTalk 2.0 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. NOTE: the provenance of this informatio…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-1995

Published Dec 31, 2004

Cross-Site Request Forgery (CSRF) vulnerability in FuseTalk 2.0 allows remote attackers to create arbitrary accounts via a link to adduser.cfm.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1