Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Alstrasoft Subscribe
Filtered by product Forum Pay Per Post Exchange
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3954 1 Alstrasoft 1 Forum Pay Per Post Exchange 2017-10-10 7.5 HIGH N/A
SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange allows remote attackers to execute arbitrary SQL commands via the cat parameter in a showcat action.
CVE-2008-0429 1 Alstrasoft 1 Forum Pay Per Post Exchange 2017-09-28 7.5 HIGH N/A
SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange 2.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter in a forum_catview action.
CVE-2008-0440 1 Alstrasoft 1 Forum Pay Per Post Exchange 2017-09-28 5.0 MEDIUM N/A
AlstraSoft Forum Pay Per Post Exchange 2.0 stores passwords in cleartext, which makes it easier for attackers to access user accounts.