Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2012-6668 1 Dragonbyte-tech 1 Vbshout Module 2024-11-21 N/A
Multiple cross-site scripting (XSS) vulnerabilities in the Shout Reports in the DragonByte Technologies vBShout module before 6.0.6 for vBulletin allow remote attackers to inject arbitrary web script or HTML via the (1) reportreason parameter in actions/doreport.php or (2) modnotes parameter in actions/updatereport.php.
CVE-2012-6667 1 Dragonbyte-tech 1 Vbshout 2024-11-21 N/A
Cross-site scripting (XSS) vulnerability in vbshout.php in DragonByte Technologies vBShout module for vBulletin allows remote attackers to inject arbitrary web script or HTML via the shout parameter in a shout action.