Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Advanced Webhost Billing System Subscribe
Filtered by product Advanced Webhost Billing System
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-2272 1 Advanced Webhost Billing System 1 Advanced Webhost Billing System 2017-10-10 7.5 HIGH N/A
PHP remote file inclusion vulnerability in docs/front-end-demo/cart2.php in Advanced Webhost Billing System (AWBS) 2.4.0 allows remote attackers to execute arbitrary PHP code via a URL in the workdir parameter.
CVE-2007-4112 1 Advanced Webhost Billing System 1 Advanced Webhost Billing System 2017-07-28 6.8 MEDIUM N/A
Multiple SQL injection vulnerabilities in Advanced Webhost Billing System (AWBS) before 2.6.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via unspecified vectors. NOTE: this can be leveraged for XSS attacks that "bypass AWBS's anti-XSS input validation."
CVE-2007-4113 1 Advanced Webhost Billing System 1 Advanced Webhost Billing System 2008-11-14 3.5 LOW N/A
Unspecified vulnerability in Advanced Webhost Billing System (AWBS) before 2.6.0 allows remote authenticated users to obtain configuration data about other dedicated servers via unspecified vectors.