Skip to content
Noroxi

bosdev records

12 published records for vendor bosdev.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
6
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

12 records
  • CVE-2006-3527
    31Monitor

    Multiple PHP remote file inclusion vulnerabilities in BosClassifieds Classified Ads allow remote attackers to execute arbitrary PHP code via

    HighCVSS 7.5No exploitEPSS 4%

    bosdev · bosclassifieds classified adsJul 11, 2006

  • CVE-2006-3957
    31Monitor

    PHP remote file inclusion vulnerability in payment.php in BosDev BosDates allows remote attackers to execute arbitrary PHP code via a URL in

    HighCVSS 7.5Proof of conceptEPSS 3%

    bosdev · bosdatesAug 1, 2006

  • CVE-2005-3911
    30Monitor

    Multiple SQL injection vulnerabilities in calendar.php in BosDates 4.0 and earlier allow remote attackers to execute arbitrary SQL commands

    HighCVSS 7.5Proof of conceptEPSS 1%

    bosdev · bosdatesNov 30, 2005

  • CVE-2008-1838
    30Monitor

    SQL injection vulnerability in BosClassifieds Classified Ads System 3.0 allows remote attackers to execute arbitrary SQL commands via the ca

    HighCVSS 7.5Proof of conceptEPSS 1%

    bosdev · bosclassifieds ads systemsApr 16, 2008

  • CVE-2008-6526
    30Monitor

    SQL injection vulnerability in index.php in BosDev BosClassifieds allows remote attackers to execute arbitrary SQL commands via the cat_id p

    HighCVSS 7.5Proof of conceptEPSS 1%

    bosdev · bos classifiedsMar 25, 2009

  • CVE-2008-4703
    30Monitor

    SQL injection vulnerability in news.php in BosDev BosNews 4.0 allows remote attackers to execute arbitrary SQL commands via the article para

    HighCVSS 7.5Proof of conceptEPSS 1%

    bosdev · bosnewsOct 23, 2008

  • CVE-2004-0275
    21Monitor

    SQL injection vulnerability in calendar_download.php in BosDates 3.2 and earlier allows remote attackers to obtain sensitive information and

    MediumCVSS 5.0Proof of conceptEPSS 3%

    bosdev · bosdatesNov 23, 2004

  • CVE-2007-5835
    20Monitor

    Install.php in BosDev BosNews 4 and 5 does not require authentication for replacing an existing product installation or creating a new admin

    MediumCVSS 5.0No exploitEPSS 1%

    bosdev · bosnewsNov 5, 2007

  • CVE-2008-1211
    17Monitor

    Cross-site scripting (XSS) vulnerability in BosDates 3.x and 4.x allows remote attackers to inject arbitrary web script or HTML via (1) the

    MediumCVSS 4.3No exploitEPSS 1%

    bosdev · bosdatesMar 7, 2008

  • CVE-2008-1224
    17Monitor

    Cross-site scripting (XSS) vulnerability in account.php in BosClassifieds Classified Ads System 3.0 allows remote attackers to inject arbitr

    MediumCVSS 4.3No exploitEPSS 1%

    bosdev · bosclassifieds classified adsMar 10, 2008

  • CVE-2007-5834
    17Monitor

    Cross-site scripting (XSS) vulnerability in BosDev BosNews 4 allows remote attackers to inject arbitrary web script or HTML via a SCRIPT ele

    MediumCVSS 4.3No exploitEPSS 1%

    bosdev · bosnewsNov 5, 2007

  • CVE-2007-5833
    14Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in BosDev BosMarket Business Directory System allow remote authenticated users to inject

    LowCVSS 3.5No exploitEPSS 1%

    bosdev · bosmarket business directory systemNov 5, 2007