Skip to main content

Vendor archive

kent-web CVEs

Beta · best-effort

16 CVEs tagged to vendor kent-web0 Critical, 1 High, 15 Medium, 0 Low, 0 Unrated.

CVE-2015-0889

Published Feb 28, 2015

KENT-WEB Joyful Note before 5.3 allows remote attackers to delete files or write to files, and consequently execute arbitrary code, via vectors involving an article.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-0888

Published Feb 28, 2015

KENT-WEB Clip Board before 4.1 allows remote attackers to delete arbitrary files via unspecified vectors.

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-7258

Published Dec 5, 2014

Cross-site scripting (XSS) vulnerability in KENT-WEB Clip Board 2.91 and earlier, when running certain versions of Internet Explorer, allows remote attackers to inject arbitrary w…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5176

Published Dec 6, 2012

Cross-site scripting (XSS) vulnerability in KENT-WEB ACCESS REPORT 5.02 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to tag embed…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5175

Published Dec 6, 2012

Cross-site scripting (XSS) vulnerability in KENT-WEB ACCESS REPORT 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to access-log…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2643

Published Jul 7, 2012

Cross-site scripting (XSS) vulnerability in KENT-WEB YY-BOARD before 6.4 allows remote attackers to inject arbitrary web script or HTML via a crafted form entry.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2637

Published Jun 19, 2012

Cross-site scripting (XSS) vulnerability in KENT-WEB WEB PATIO 4.04 and earlier might allow remote attackers to inject arbitrary web script or HTML via a crafted cookie.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2636

Published Jun 19, 2012

Cross-site scripting (XSS) vulnerability in KENT-WEB WEB PATIO 4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-4172

Published Oct 24, 2011

Multiple cross-site scripting (XSS) vulnerabilities in KENT-WEB WEB FORUM before 5.1 allow remote attackers to inject arbitrary web script or HTML via (1) an e-mail address field…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3984

Published Oct 24, 2011

Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to "web form entr…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3983

Published Oct 24, 2011

Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to cookies.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3383

Published Oct 24, 2011

Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to "the web page…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5224

Published Nov 25, 2008

Cross-site scripting (XSS) vulnerability in Kent Web Mart 1.61 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-16 of 16 CVEsPage 1 of 1