Chadhaajay Phpkb vulnerabilities
119 known vulnerabilities affecting chadhaajay/phpkb.
Total CVEs
119
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
HIGH5MEDIUM112LOW2
Vulnerabilities
Page 2 of 6
CVE-2020-10437P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10437 [MEDIUM] CWE-79 CVE-2020-10437: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/optimize-database.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10399P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10399 [MEDIUM] CWE-79 CVE-2020-10399: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-user.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10407P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10407 [MEDIUM] CWE-79 CVE-2020-10407: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/edit-news.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10443P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10443 [MEDIUM] CWE-79 CVE-2020-10443: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/report-article-printed.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10425P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10425 [MEDIUM] CWE-79 CVE-2020-10425: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-glossary.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10426P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10426 [MEDIUM] CWE-79 CVE-2020-10426: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-groups.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10417P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10417 [MEDIUM] CWE-79 CVE-2020-10417: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-articles.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10423P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10423 [MEDIUM] CWE-79 CVE-2020-10423: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-feedbacks.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10431P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10431 [MEDIUM] CWE-79 CVE-2020-10431: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-templates.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10405P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10405 [MEDIUM] CWE-79 CVE-2020-10405: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/edit-glossary.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10411P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10411 [MEDIUM] CWE-79 CVE-2020-10411: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/email-harvester.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10446P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10446 [MEDIUM] CWE-79 CVE-2020-10446: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/report-category.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10436P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10436 [MEDIUM] CWE-79 CVE-2020-10436: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/my-profile.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10445P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10445 [MEDIUM] CWE-79 CVE-2020-10445: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/report-article.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10430P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10430 [MEDIUM] CWE-79 CVE-2020-10430: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-subscribers.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10427P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10427 [MEDIUM] CWE-79 CVE-2020-10427: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-languages.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10442P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10442 [MEDIUM] CWE-79 CVE-2020-10442: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/report-article-popular.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10420P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10420 [MEDIUM] CWE-79 CVE-2020-10420: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-comments.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10422P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10422 [MEDIUM] CWE-79 CVE-2020-10422: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/manage-drafts.php by adding a question mark (?) followed by the payload.
nvd
CVE-2020-10435P4MEDIUMCVSS 4.8v9.02020-03-12
CVE-2020-10435 [MEDIUM] CWE-79 CVE-2020-10435: The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflec
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/my-languages.php by adding a question mark (?) followed by the payload.
nvd