Skip to main content

Vendor/product archive

simon_brown / pebble CVEs

Beta · best-effort

5 CVEs tagged to simon_brown / pebble0 Critical, 0 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2012-4023

Published Nov 8, 2012

CRLF injection vulnerability in Pebble before 2.6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4022

Published Nov 8, 2012

Pebble before 2.6.4 allows remote attackers to trigger loss of blog-entry viewability via a crafted comment.

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5170

Published Nov 4, 2012

Open redirect vulnerability in Pebble before 2.6.4 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0736

Published Feb 25, 2009

Cross-site scripting (XSS) vulnerability in Pebble before 2.3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5168

Published Oct 10, 2006

Cross-site scripting (XSS) vulnerability in the search functionality in Simon Brown Pebble 2.0.0 RC1 and RC2 allows remote attackers to inject arbitrary web script or HTML via the…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1