Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Active Php Bookmarks Subscribe
Filtered by product Active Php Bookmarks
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-6167 1 Active Php Bookmarks 1 Active Php Bookmarks 2018-10-17 7.5 HIGH N/A
** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in L. Brandon Stone and Nathanial P. Hendler Active PHP Bookmarks (APB) 1.1.02 allow remote attackers to execute arbitrary PHP code via a URL in the APB_SETTINGS['apb_path'] parameter in (1) apb_common.php or (2) apb.php. NOTE: CVE and another third party dispute this vulnerability because these PHP scripts exit if the attack vectors are present in GPC variables.
CVE-2003-1255 1 Active Php Bookmarks 1 Active Php Bookmarks 2017-07-10 6.4 MEDIUM N/A
add_bookmark.php in Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to add arbitrary bookmarks as other users using a modified auth_user_id parameter.
CVE-2003-1254 1 Active Php Bookmarks 1 Active Php Bookmarks 2008-09-05 5.0 MEDIUM N/A
Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to execute arbitrary PHP code via (1) head.php, (2) apb_common.php, or (3) apb_view_class.php by modifying the APB_SETTINGS parameter to reference a URL on a remote web server that contains the code.