Skip to content
Noroxi

arabless records

6 published records for vendor arabless.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
4
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    6 records
    • CVE-2006-2279
      31Monitor

      Multiple SQL injection vulnerabilities in SaphpLesson 3.0 allow remote attackers to execute arbitrary SQL commands via (1) the Find paramete

      HighCVSS 7.5No exploitEPSS 2%

      arabless · saphplessonMay 9, 2006

    • CVE-2006-2835
      30Monitor

      SQL injection vulnerability in saphplesson 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) forumid parameter in ad

      HighCVSS 7.5Proof of conceptEPSS 1%

      arabless · saphplessonJun 6, 2006

    • CVE-2009-2883
      27Monitor

      SQL injection vulnerability in admin/login.php in SaphpLesson 4.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arb

      MediumCVSS 6.8Proof of conceptEPSS 1%

      arabless · saphplessonAug 20, 2009

    • CVE-2006-2278
      20Monitor

      SaphpLesson 3.0 does not initialize array variables, which allows remote attackers to obtain the full path via an non-array (1) hrow paramet

      MediumCVSS 5.0No exploitEPSS 2%

      arabless · saphplessonMay 9, 2006

    • CVE-2006-1420
      20Monitor

      SQL injection vulnerability in print.php in SaphpLesson 2.0 allows remote attackers to execute arbitrary SQL commands via the lessid paramet

      MediumCVSS 5.0Proof of conceptEPSS 1%

      arabless · saphplessonMar 28, 2006

    • CVE-2006-1720
      17Monitor

      Cross-site scripting (XSS) vulnerability in search.php in SaphpLesson 3.0 allows remote attackers to inject arbitrary web script or HTML via

      MediumCVSS 4.3No exploitEPSS 1%

      arabless · saphplessonApr 11, 2006