Filtered by vendor Php Web Scripts
Subscribe
Total
7 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2006-5166 | 1 Php Web Scripts | 1 Easy Banner Free | 2018-10-17 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in functions.php in PHP Web Scripts Easy Banner Free allows remote attackers to execute arbitrary PHP code via a URL in the s[phppath] parameter. | |||||
CVE-2007-0178 | 1 Php Web Scripts | 1 Easy Banner Pro | 2018-10-16 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in info.php in Easy Banner Pro 2.8 allows remote attackers to execute arbitrary PHP code via a URL in the s[phppath] parameter. | |||||
CVE-2008-1162 | 1 Php Web Scripts | 1 Dynamic Photo Gallery | 2018-10-11 | 7.5 HIGH | N/A |
SQL injection vulnerability in album.php in PHP WEB SCRIPT Dynamic Photo Gallery 1.02 allows remote attackers to execute arbitrary SQL commands via the albumID parameter. | |||||
CVE-2006-3192 | 1 Php Web Scripts | 1 Ad Manager Pro | 2017-10-18 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in Ad Manager Pro 2.6 allows remote attackers to execute arbitrary PHP code via a URL in the (1) ipath parameter in common.php and (2) unspecified vectors in ad.php. | |||||
CVE-2005-4231 | 1 Php Web Scripts | 1 Link Up Gold | 2011-03-07 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in Link Up Gold 2.5 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) link parameter to tell_friend.php, (2) phrase[] parameter to search.php in a search_links_advanced action, and the (3) direction or (4) sort parameter to articles.php. | |||||
CVE-2005-4230 | 1 Php Web Scripts | 1 Link Up Gold | 2008-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in poll.php in Link Up Gold 2.5 and earlier allows remote attackers to execute arbitrary SQL commands via the number parameter. | |||||
CVE-2005-4233 | 1 Php Web Scripts | 1 Ad Manager Pro | 2008-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in advertiser_statistic.php in Ad Manager Pro 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ad_number parameter. |