cre loaded
Web & CMS Pluginscommercial
Top products
Latest CVEs
The 3 most recently published vulnerabilities affecting cre loaded.
- CVE-2008-2557Cross-site scripting (XSS) vulnerability in CRE Loaded 6.2.13.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) Links and (2) Links Submit pages.4.3
- CVE-2008-2558CRE Loaded 6.2.13.1 and earlier does not set the "Secure" attribute for cookies that are sent over HTTPS, which might allow remote attackers to sniff the cookies if they are sent over HTTP.5.0
- CVE-2006-0478CRE Loaded 6.15 allows remote attackers to perform privileged actions, including uploading and creating arbitrary files, via a direct request to files.php. NOTE: the vendor states "The initial ann...7.5