← Back

Phpkb

phpkb

Vendor: Chadhaajay • 119 CVEs

CVEs (119)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-articles.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete an article via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/add-field.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to create a custom field via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/ajax-hub.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to post a comment on any article via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/add-template.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a new article template via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/add-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a new glossary term via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/add-category.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a new category via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/add-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a new news article via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
CSRF in admin/manage-settings.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to change the global settings, potentially gaining code execution or causing a denial of service, via a crafted request.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-categories.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-templates.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-fields.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/edit-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/edit-comment.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/edit-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
1Chadhaajay
1Phpkb
Nov 21, 2024
Mar 12, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Reflected XSS in admin/edit-category.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.