Skip to content
Noroxi

comscripts records

19 published records for vendor comscripts.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
9
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

19 records
  • CVE-2006-4622
    31Monitor

    PHP remote file inclusion vulnerability in annonce.php in AnnonceV (aka annoncesV) 1.1 allows remote attackers to execute arbitrary PHP code

    HighCVSS 7.5Proof of conceptEPSS 3%

    comscripts · annoncevSep 6, 2006

  • CVE-2010-1114
    31Monitor

    Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal 0.1 allow remote attackers to execute arbitrary PHP co

    HighCVSS 7.5Proof of conceptEPSS 3%

    comscripts · web server creator web portalMar 25, 2010

  • CVE-2006-4746
    31Monitor

    PHP remote file inclusion vulnerability in news/include/customize.php in Web Server Creator 0.1 allows remote attackers to execute arbitrary

    HighCVSS 7.5Proof of conceptEPSS 3%

    comscripts · web server creatorSep 13, 2006

  • CVE-2008-6543
    31Monitor

    Multiple PHP remote file inclusion vulnerabilities in ComScripts TEAM Quick Classifieds 1.0 via the DOCUMENT_ROOT parameter to (1) index.php

    HighCVSS 7.5Proof of conceptEPSS 3%

    comscripts · quick classifiedsMar 29, 2009

  • CVE-2007-0361
    31Monitor

    PHP remote file inclusion vulnerability in mep/frame.php in PHPMyphorum 1.5a allows remote attackers to execute arbitrary PHP code via a URL

    HighCVSS 7.5Proof of conceptEPSS 2%

    comscripts · phpmyphorumJan 18, 2007

  • CVE-2006-4678
    31Monitor

    PHP remote file inclusion vulnerability in News Evolution 3.0.3 allows remote attackers to execute arbitrary PHP code via the _NE[AbsPath] p

    HighCVSS 7.5Proof of conceptEPSS 2%

    comscripts · news evolutionSep 11, 2006

  • CVE-2008-6545
    31Monitor

    PHP remote file inclusion vulnerability in news/include/createdb.php in Web Server Creator Web Portal 0.1 allows remote attackers to execute

    HighCVSS 7.5Proof of conceptEPSS 2%

    comscripts · web server creator web portalMar 29, 2009

  • CVE-2002-2217
    31Monitor

    Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal (WSC-WebPortal) 0.1 allow remote attackers to execute

    HighCVSS 7.5No exploitEPSS 2%

    comscripts · web server creatorDec 31, 2002

  • CVE-2006-3168
    31Monitor

    SQL injection vulnerability in CS-Forum before 0.82 allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) debut p

    HighCVSS 7.5No exploitEPSS 2%

    comscripts · cs-forumJun 22, 2006

  • CVE-2006-4754
    28Monitor

    Cross-site scripting (XSS) vulnerability in index.php in PHProg before 1.1 allows remote attackers to inject arbitrary web script or HTML vi

    MediumCVSS 6.8Proof of conceptEPSS 2%

    comscripts · phprogSep 13, 2006

  • CVE-2006-4753
    21Monitor

    Directory traversal vulnerability in index.php in PHProg before 1.1 allows remote attackers to read arbitrary files via a ..

    MediumCVSS 5.0Proof of conceptEPSS 3%

    comscripts · phprogSep 13, 2006

  • CVE-2007-1144
    21Monitor

    Directory traversal vulnerability in jwpn-photos.php in J-Web Pics Navigator 2.0 allows remote attackers to list arbitrary directories via a

    MediumCVSS 5.0No exploitEPSS 3%

    comscripts · j-web pics navigatorMar 2, 2007

  • CVE-2007-4937
    21Monitor

    CS Guestbook stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the a

    MediumCVSS 5.0Proof of conceptEPSS 3%

    comscripts · cs guestbookSep 18, 2007

  • CVE-2006-3170
    21Monitor

    CS-Forum before 0.82 allows remote attackers to obtain sensitive information via unspecified manipulations, possibly involving an empty coll

    MediumCVSS 5.0No exploitEPSS 2%

    comscripts · cs-forumJun 22, 2006

  • CVE-2010-1115
    20Monitor

    Directory traversal vulnerability in news/include/customize.php in Web Server Creator - Web Portal 0.1 allows remote attackers to read arbit

    MediumCVSS 5.0No exploitEPSS 2%

    comscripts · web server creator web portalMar 25, 2010

  • CVE-2006-3171
    20Monitor

    CRLF injection vulnerability in CS-Forum before 0.82 allows remote attackers to inject arbitrary email headers via a newline character in th

    MediumCVSS 5.0No exploitEPSS 1%

    comscripts · cs-forumJun 22, 2006

  • CVE-2006-3169
    18Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in CS-Forum 0.81 and earlier allow remote attackers to inject arbitrary web script or HT

    MediumCVSS 4.3No exploitEPSS 2%

    comscripts · cs-forumJun 22, 2006

  • CVE-2008-6655
    17Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in GEDCOM_TO_MYSQL 2 allow remote attackers to inject arbitrary web script or HTML via t

    MediumCVSS 4.3Proof of conceptEPSS 1%

    comscripts · gedcom to myslApr 7, 2009

  • CVE-2010-1113
    17Monitor

    Cross-site scripting (XSS) vulnerability in the forum page in Web Server Creator - Web Portal 0.1 allows remote attackers to inject arbitrar

    MediumCVSS 4.3Proof of conceptEPSS 1%

    comscripts · web server creator web portalMar 25, 2010