Filtered by vendor Phamm Subscriptions
Filtered by product Phamm Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2017-0378 1 Phamm 1 Phamm 2024-08-05 N/A
XSS exists in the login_form function in views/helpers.php in Phamm before 0.6.7, exploitable via the PATH_INFO to main.php.
CVE-2018-20806 1 Phamm 1 Phamm 2024-08-05 N/A
Phamm (aka PHP LDAP Virtual Hosting Manager) 0.6.8 allows XSS via the login page (the /public/main.php action parameter).