Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Webportal Subscribe
Filtered by product Webportal Cms
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-1444 1 Webportal 1 Webportal Cms 2017-09-28 7.5 HIGH N/A
PHP remote file inclusion vulnerability in indexk.php in WebPortal CMS 0.8-beta allows remote attackers to execute arbitrary PHP code via a URL in the lib_path parameter.
CVE-2008-4345 1 Webportal 1 Webportal Cms 2017-09-28 7.5 HIGH N/A
SQL injection vulnerability in download.php in WebPortal CMS 0.7.4 and earlier allows remote attackers to execute arbitrary SQL commands via the aid parameter.
CVE-2007-6664 1 Webportal 1 Webportal Cms 2017-09-28 7.5 HIGH N/A
SQL injection vulnerability in index.php in WebPortal CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter.
CVE-2008-0141 1 Webportal 1 Webportal Cms 2017-09-28 7.5 HIGH N/A
actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day, which makes it easier for remote attackers to obtain access to any account via a lostpass action.
CVE-2008-0142 1 Webportal 1 Webportal Cms 2017-09-28 6.8 MEDIUM N/A
Multiple SQL injection vulnerabilities in WebPortal CMS 0.6-beta allow remote attackers to execute arbitrary SQL commands via the user_name parameter to actions.php, and unspecified other vectors.