Filtered by vendor Zibbs Project Subscriptions
Filtered by product Zibbs Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-23719 1 Zibbs Project 1 Zibbs 2024-11-21 9.6 Critical
Cross site scripting (XSS) vulnerability in application/controllers/AdminController.php in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the bbsmeta parameter.
CVE-2020-23718 1 Zibbs Project 1 Zibbs 2024-11-21 9.6 Critical
Cross site scripting (XSS) vulnerability in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the route parameter to index.php.