phpx kayıtları
phpx üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 7
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2004-0249Kavram kanıtı | PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie's PXL variable to reference another phpx · phpx | Kritik10,0 | — | %4,9 | 23 Kas 2004 |
31İzleyin | CVE-2007-1550Kavram kanıtı | Multiple SQL injection vulnerabilities in phpx 3.5.15 allow remote attackers to execute arbitrary SQL commands via the (1) image_id or (2) cphpx · phpx | Yüksek7,5 | — | %2,0 | 20 Mar 2007 |
31İzleyin | CVE-2005-3968Kavram kanıtı | SQL injection vulnerability in auth.inc.php in PHPX 3.5.9 and earlier allows remote attackers to execute arbitrary SQL commands, bypass authphpx · phpx | Yüksek7,5 | — | %2,0 | 3 Ara 2005 |
30İzleyin | CVE-2008-3489Kavram kanıtı | SQL injection vulnerability in checkCookie function in includes/functions.inc.php in PHPX 3.5.16 allows remote attackers to execute arbitrarphpx · phpx · CWE-89 | Yüksek7,5 | — | %1,0 | 6 Ağu 2008 |
27İzleyin | CVE-2004-0248İstismar yok | Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitphpx · phpx | Orta6,8 | — | %1,5 | 23 Kas 2004 |
27İzleyin | CVE-2007-1549İstismar yok | Unrestricted file upload vulnerability in gallery.php in phpx 3.5.15 allows remote attackers to upload and execute arbitrary PHP scripts viaphpx · phpx | Orta6,8 | — | %1,2 | 20 Mar 2007 |
27İzleyin | CVE-2008-5000Kavram kanıtı | SQL injection vulnerability in admin/includes/news.inc.php in PHPX 3.5.16, when magic_quotes_gpc is disabled, allows remote attackers to exephpx · phpx · CWE-89 | Orta6,8 | — | %0,9 | 10 Kas 2008 |
23İzleyin | CVE-2004-2364Kavram kanıtı | Cross-site request forgery (CSRF) vulnerability in PHPX 3.0 through 3.2.6 allows remote attackers to execute arbitrary commands via URLs thaphpx · phpx | Orta5,0 | — | %10,7 | 31 Ara 2004 |
21İzleyin | CVE-2004-2362İstismar yok | PHPX 3.2.6 and earlier allows remote attackers to obtain the physical path of PHPX via a null or invalid value in the limit parameter, whichphpx · phpx | Orta5,0 | — | %1,7 | 31 Ara 2004 |
18İzleyin | CVE-2004-2363Kavram kanıtı | Validate-Before-Canonicalize vulnerability in the checkURI function in functions.inc.php in PHPX 3.0 through 3.2.6 allows remote attackers tphpx · phpx | Orta4,3 | — | %1,8 | 31 Ara 2004 |
18İzleyin | CVE-2006-0933Kavram kanıtı | Cross-site scripting (XSS) vulnerability in PHPX 3.5.9 allows remote attackers to inject arbitrary web script or HTML via a javascript URI iphpx · phpx | Orta4,3 | — | %1,7 | 28 Şub 2006 |
17İzleyin | CVE-2007-1551İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in phpx 3.5.15 allow remote attackers to inject arbitrary web script or HTML via (1) thephpx · phpx | Orta4,3 | — | %1,5 | 20 Mar 2007 |
- CVE-2004-024941Planlayın
PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie's PXL variable to reference another
KritikCVSS 10,0Kavram kanıtıEPSS %5phpx · phpx23 Kas 2004
- CVE-2007-155031İzleyin
Multiple SQL injection vulnerabilities in phpx 3.5.15 allow remote attackers to execute arbitrary SQL commands via the (1) image_id or (2) c
YüksekCVSS 7,5Kavram kanıtıEPSS %2phpx · phpx20 Mar 2007
- CVE-2005-396831İzleyin
SQL injection vulnerability in auth.inc.php in PHPX 3.5.9 and earlier allows remote attackers to execute arbitrary SQL commands, bypass auth
YüksekCVSS 7,5Kavram kanıtıEPSS %2phpx · phpx3 Ara 2005
- CVE-2008-348930İzleyin
SQL injection vulnerability in checkCookie function in includes/functions.inc.php in PHPX 3.5.16 allows remote attackers to execute arbitrar
YüksekCVSS 7,5Kavram kanıtıEPSS %1phpx · phpx6 Ağu 2008
- CVE-2004-024827İzleyin
Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbit
OrtaCVSS 6,8İstismar yokEPSS %1phpx · phpx23 Kas 2004
- CVE-2007-154927İzleyin
Unrestricted file upload vulnerability in gallery.php in phpx 3.5.15 allows remote attackers to upload and execute arbitrary PHP scripts via
OrtaCVSS 6,8İstismar yokEPSS %1phpx · phpx20 Mar 2007
- CVE-2008-500027İzleyin
SQL injection vulnerability in admin/includes/news.inc.php in PHPX 3.5.16, when magic_quotes_gpc is disabled, allows remote attackers to exe
OrtaCVSS 6,8Kavram kanıtıEPSS %1phpx · phpx10 Kas 2008
- CVE-2004-236423İzleyin
Cross-site request forgery (CSRF) vulnerability in PHPX 3.0 through 3.2.6 allows remote attackers to execute arbitrary commands via URLs tha
OrtaCVSS 5,0Kavram kanıtıEPSS %11phpx · phpx31 Ara 2004
- CVE-2004-236221İzleyin
PHPX 3.2.6 and earlier allows remote attackers to obtain the physical path of PHPX via a null or invalid value in the limit parameter, which
OrtaCVSS 5,0İstismar yokEPSS %2phpx · phpx31 Ara 2004
- CVE-2004-236318İzleyin
Validate-Before-Canonicalize vulnerability in the checkURI function in functions.inc.php in PHPX 3.0 through 3.2.6 allows remote attackers t
OrtaCVSS 4,3Kavram kanıtıEPSS %2phpx · phpx31 Ara 2004
- CVE-2006-093318İzleyin
Cross-site scripting (XSS) vulnerability in PHPX 3.5.9 allows remote attackers to inject arbitrary web script or HTML via a javascript URI i
OrtaCVSS 4,3Kavram kanıtıEPSS %2phpx · phpx28 Şub 2006
- CVE-2007-155117İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in phpx 3.5.15 allow remote attackers to inject arbitrary web script or HTML via (1) the
OrtaCVSS 4,3İstismar yokEPSS %2phpx · phpx20 Mar 2007