Vulnerabilities (CVE)

Filtered by vendor Oliver Project Subscribe
Filtered by product Oliver
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-2710 1 Oliver Project 1 Oliver 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Oliver (formerly Webshare) 1.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the (1) login page (index.php) or (2) login form (loginform-inc.php).