Samuel Lebeau

2 exploits Active since Sep 2009
CVE-2008-7220 WRITEUP WRITEUP
Prototype JavaScript <1.6.0.2 - CSRF
Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests" via unknown vectors.
CVE-2020-7993 WRITEUP MEDIUM WRITEUP
Prototype 1.6.0.1 - Authenticated Ticket Forgery via Email ID Field
Prototype 1.6.0.1 allows remote authenticated users to forge ticket creation (on behalf of other user accounts) via a modified email ID field.
CVSS 4.3