Skip to content
Noroxi

phpslash records

4 published records for vendor phpslash.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    4 records
    • Eval injection vulnerability in index.php in phpSlash 0.8.1.1 and earlier allows remote attackers to execute arbitrary PHP code via the fiel

      CriticalCVSS 10.0Proof of conceptEPSS 49%

      phpslash · phpslashFeb 10, 2009

    • The saveProfile function in PhpSlash 0.8.0 allows remote attackers to modify arbitrary profiles and gain privileges by modifying the author_

      CriticalCVSS 10.0No exploitEPSS 3%

      phpslash · phpslashJul 13, 2005

    • CVE-2005-4479
      30Monitor

      SQL injection vulnerability in article.php in phpSlash 0.8.1 and earlier allows remote attackers to execute arbitrary SQL commands via the s

      HighCVSS 7.5Proof of conceptEPSS 1%

      phpslash · phpslashDec 22, 2005

    • CVE-2001-1334
      21Monitor

      Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrary files by creating

      MediumCVSS 5.0Proof of conceptEPSS 3%

      phpslash · phpslashMay 19, 2002