nicephpscripts records
3 published records for vendor nicephpscripts.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2017-15988Proof of concept | Nice PHP FAQ Script allows SQL Injection via the index.php nice_theme parameter, a different vulnerability than CVE-2008-6525.nicephpscripts · nice php faq script · CWE-89 | Critical9.8 | — | 2.7% | Oct 31, 2017 |
40Plan | CVE-2017-15964Proof of concept | Job Board Script Software allows SQL Injection via the PATH_INFO to a /job-details URI.nicephpscripts · job board script · CWE-89 | Critical9.8 | — | 2.1% | Oct 29, 2017 |
31Monitor | CVE-2008-6525Proof of concept | SQL injection vulnerability in the Admin Panel in Nice PHP FAQ Script (Knowledge base Script) allows remote attackers to execute arbitrary Snicephpscripts · nice php faq script · CWE-89 | High7.5 | — | 2.0% | Mar 25, 2009 |
- CVE-2017-1598840Plan
Nice PHP FAQ Script allows SQL Injection via the index.php nice_theme parameter, a different vulnerability than CVE-2008-6525.
CriticalCVSS 9.8Proof of conceptEPSS 3%nicephpscripts · nice php faq scriptOct 31, 2017
- CVE-2017-1596440Plan
Job Board Script Software allows SQL Injection via the PATH_INFO to a /job-details URI.
CriticalCVSS 9.8Proof of conceptEPSS 2%nicephpscripts · job board scriptOct 29, 2017
- CVE-2008-652531Monitor
SQL injection vulnerability in the Admin Panel in Nice PHP FAQ Script (Knowledge base Script) allows remote attackers to execute arbitrary S
HighCVSS 7.5Proof of conceptEPSS 2%nicephpscripts · nice php faq scriptMar 25, 2009