Filtered by vendor Simplerisk
Subscribe
Search
Total
2 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2013-5749 | 1 Simplerisk | 1 Simplerisk | 2014-05-13 | 4.3 MEDIUM | N/A |
| Cross-site scripting (XSS) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to inject arbitrary web script or HTML via the new_project parameter. | |||||
| CVE-2013-5748 | 1 Simplerisk | 1 Simplerisk | 2014-05-13 | 6.8 MEDIUM | N/A |
| Cross-site request forgery (CSRF) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to hijack the authentication of users for requests that add projects via an add_project action. | |||||
