sikikmail

1 exploit Active since Oct 2005
CVE-2005-3308 EXPLOITDB text WORKING POC
Zomplog 3.4 - Cross-Site Scripting via Name, Comment, Username, or Search Parameter
Multiple cross-site scripting (XSS) vulnerabilities in Zomplog 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) comment parameter in detail.php, (3) the username parameter in get.php, and (4) the search parameter in index.php.