Skip to main content

Vendor/product archive

xigla / absolute_control_panel_xe CVEs

Beta · best-effort

3 CVEs tagged to xigla / absolute_control_panel_xe0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2008-6859

Published Jul 14, 2009

Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-1504

Published May 1, 2009

Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin cookie to "lvl=1&userid=1."

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2756

Published Jun 18, 2008

Cross-site scripting (XSS) vulnerability in admin/users.asp in Xigla Absolute Control Panel XE 1.0 allows remote attackers to inject arbitrary web script or HTML via the name para…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1