Total
5 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2009-1444 | 1 Webportal | 1 Webportal Cms | 2017-09-28 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in indexk.php in WebPortal CMS 0.8-beta allows remote attackers to execute arbitrary PHP code via a URL in the lib_path parameter. | |||||
CVE-2008-4345 | 1 Webportal | 1 Webportal Cms | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in download.php in WebPortal CMS 0.7.4 and earlier allows remote attackers to execute arbitrary SQL commands via the aid parameter. | |||||
CVE-2007-6664 | 1 Webportal | 1 Webportal Cms | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in WebPortal CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter. | |||||
CVE-2008-0141 | 1 Webportal | 1 Webportal Cms | 2017-09-28 | 7.5 HIGH | N/A |
actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day, which makes it easier for remote attackers to obtain access to any account via a lostpass action. | |||||
CVE-2008-0142 | 1 Webportal | 1 Webportal Cms | 2017-09-28 | 6.8 MEDIUM | N/A |
Multiple SQL injection vulnerabilities in WebPortal CMS 0.6-beta allow remote attackers to execute arbitrary SQL commands via the user_name parameter to actions.php, and unspecified other vectors. |