Vulnerabilities

    GMS-2014-20 Remote Code Execution

    GMS-2014-19 Cross-site Scripting

    GMS-2014-18 Token Disclosure

    CVE-2010-1870 XWork ParameterInterceptors bypass allows remote command execution

    GMS-2014-17 Cross Site Scripting

    CVE-2013-6408 XML eXternal Entity (XXE) flaw in DocumentAnalysisRequestHandler

    CVE-2013-6407 XML eXternal Entity (XXE) flaw in XML and XSLT UpdateRequestHandler

    GMS-2014-15 Remote code execution

    OSVDB-108900 dbuser Variable Shell Metacharacter Injection Remote Command Execution

    OSDDB-108899 SQL Injection