MidnightBSD

Advisories for esqlanelapse

CVE-2006-1570 MEDIUM

Cross-site scripting (XSS) vulnerability in Esqlanelapse 2.0 and 2.2 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
esqlanelapse esqlanelapse 2.0
esqlanelapse esqlanelapse 2.2
CVE-2007-3560 HIGH

Multiple unspecified vulnerabilities in Esqlanelapse before 2.6 have unknown impact and attack vectors.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
esqlanelapse esqlanelapse *
CVE-2008-7019 HIGH

Esqlanelapse 2.6.1 and 2.6.2 allows remote attackers to bypass authentication and gain privileges via modified (1) enombre and (2) euri cookies.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-287,

Products Affected

Vendor Product Version
esqlanelapse esqlanelapse 2.6.2
esqlanelapse esqlanelapse 2.6.1