Filtered by vendor Knusperleicht
Subscribe
Total
9 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2006-4008 | 1 Knusperleicht | 1 Faq | 2018-10-17 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in index.php in Knusperleicht Faq 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the faq_path parameter. | |||||
CVE-2006-3982 | 1 Knusperleicht | 1 Quickie | 2018-10-17 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in quickie.php in Knusperleicht Quickie, probably 0.2, allows remote attackers to execute arbitrary PHP code via a URL in the QUICK_PATH parameter. | |||||
CVE-2006-3986 | 1 Knusperleicht | 1 Newsletter | 2018-10-17 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in index.php in Knusperleicht Newsletter 3.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the NL_PATH parameter. | |||||
CVE-2006-3987 | 1 Knusperleicht | 1 Knusperleicht Filemanager | 2018-10-17 | 5.1 MEDIUM | N/A |
Multiple PHP remote file inclusion vulnerabilities in index.php in Knusperleicht FileManager 1.2 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) dwl_download_path or (2) dwl_include_path parameters. | |||||
CVE-2006-3988 | 1 Knusperleicht | 1 Newsreporter | 2018-10-17 | 5.1 MEDIUM | N/A |
PHP remote file inclusion vulnerability in index.php in Knusperleicht newsReporter 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the news_include_path parameter. | |||||
CVE-2006-3989 | 1 Knusperleicht | 1 Shoutbox | 2018-10-17 | 5.1 MEDIUM | N/A |
PHP remote file inclusion vulnerability in index.php in Knusperleicht Shoutbox 4.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sb_include_path parameter. | |||||
CVE-2006-4007 | 1 Knusperleicht | 1 Knusperleicht Guestbook | 2018-10-17 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in index.php in Knusperleicht Guestbook 3.5 allows remote attackers to execute arbitrary PHP code via a URL in the GB_PATH parameter. | |||||
CVE-2005-1220 | 1 Knusperleicht | 1 Shoutbox Script | 2017-07-10 | 7.5 HIGH | N/A |
Shoutbox SCRIPT 3.0.2 and earlier allows remote attackers to obtain sensitive information via a direct request to db/settings.dat, which displays usernames and password hashes. | |||||
CVE-2006-6721 | 1 Knusperleicht | 1 Shoutbox | 2008-09-05 | 6.8 MEDIUM | N/A |
Multiple cross-site scripting (XSS) vulnerabilities in shout.php in Knusperleicht ShoutBox 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) sbNick or (2) sbKommentar parameter. |