Summary
Limny is prone to multiple remote vulnerabilities, including:
- Multiple HTML-injection vulnerabilities
- Multiple SQL-injection vulnerabilities
- Multiple security-bypass vulnerabilities
- Multiple cross-site scripting vulnerabilities.
The attacker may exploit these issues to compromise the application, execute arbitrary code, steal cookie-based authentication credentials, gain unauthorized access to the application, modify data, or exploit latent vulnerabilities in the underlying database. Other attacks are also possible.
Limny 2.01 is vulnerable
other versions may also be affected.
References
Updated on 2015-03-25
Severity
Classification
-
CVSS Base Score: 5.1
AV:N/AC:H/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- AjaXplorer Remote Command Injection and Local File Disclosure Vulnerabilities
- A Really Simple Chat Multiple XSS Vulnerabilities
- Apache CouchDB Cross Site Request Forgery Vulnerability
- Adobe Presenter viewer.swf and loadflash.js XSS Vulnerability
- Apache Tomcat source.jsp malformed request information disclosure