Skip to content
Noroxi

kwsphp records

9 published records for vendor kwsphp.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
7
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

9 records
  • CVE-2007-4956
    31Monitor

    Multiple SQL injection vulnerabilities in KwsPHP 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the pseudo parameter t

    HighCVSS 7.5Proof of conceptEPSS 4%

    kwsphp · kwsphpSep 18, 2007

  • CVE-2007-4979
    30Monitor

    SQL injection vulnerability in index.php in the sondages module in KwsPHP 1.0 allows remote attackers to execute arbitrary SQL commands via

    HighCVSS 7.5Proof of conceptEPSS 1%

    kwsphp · kwsphpSep 19, 2007

  • CVE-2007-5485
    30Monitor

    SQL injection vulnerability in index.php in the mg2 1.0 module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the

    HighCVSS 7.5Proof of conceptEPSS 1%

    kwsphp · kwsphpOct 16, 2007

  • CVE-2008-1759
    30Monitor

    SQL injection vulnerability in the jeuxflash module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the cat paramet

    HighCVSS 7.5Proof of conceptEPSS 1%

    jeuxflash · jeuxflash moduleApr 12, 2008

  • CVE-2008-1758
    30Monitor

    SQL injection vulnerability in the ConcoursPhoto module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the C_ID pa

    HighCVSS 7.5Proof of conceptEPSS 1%

    kwsphp · kwsphpApr 12, 2008

  • CVE-2008-6197
    30Monitor

    SQL injection vulnerability in index.php in the galerie module for KwsPHP 1.3.456 allows remote attackers to execute arbitrary SQL commands

    HighCVSS 7.5Proof of conceptEPSS 1%

    kwsphp · kwsphpFeb 19, 2009

  • CVE-2008-6201
    28Monitor

    Directory traversal vulnerability in help.php in the eskuel module in KwsPHP 1.3.456, as available before 20080416, allows remote attackers

    MediumCVSS 6.8Proof of conceptEPSS 3%

    kwsphp · kwsphpFeb 19, 2009

  • CVE-2007-4922
    26Monitor

    SQL injection vulnerability in play.php in the jeuxflash 1.0 module for KwsPHP allows remote authenticated users to execute arbitrary SQL co

    MediumCVSS 6.5Proof of conceptEPSS 1%

    jeuxflash · jeuxflash moduleSep 17, 2007

  • CVE-2008-1757
    17Monitor

    Cross-site scripting (XSS) vulnerability in index.php in the ConcoursPhoto module for KwsPHP 1.0 allows remote attackers to inject arbitrary

    MediumCVSS 4.3Proof of conceptEPSS 1%

    kwsphp · kwsphpApr 12, 2008