Vulnerabilities (CVE)

Filtered by vendor Simon Brown Subscribe
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-4023 1 Simon Brown 1 Pebble 2023-12-10 4.3 MEDIUM N/A
CRLF injection vulnerability in Pebble before 2.6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
CVE-2012-5170 1 Simon Brown 1 Pebble 2023-12-10 5.8 MEDIUM N/A
Open redirect vulnerability in Pebble before 2.6.4 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
CVE-2012-4022 1 Simon Brown 1 Pebble 2023-12-10 6.4 MEDIUM N/A
Pebble before 2.6.4 allows remote attackers to trigger loss of blog-entry viewability via a crafted comment.
CVE-2009-0736 1 Simon Brown 1 Pebble 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Pebble before 2.3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2006-5168 1 Simon Brown 1 Pebble 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the search functionality in Simon Brown Pebble 2.0.0 RC1 and RC2 allows remote attackers to inject arbitrary web script or HTML via the query string.