Skip to content
Noroxi

phpwind records

5 published records for vendor phpwind.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • CVE-2006-7101
    30Monitor

    SQL injection vulnerability in admin.php in PHPWind 5.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the Admi

    HighCVSS 7.5Proof of conceptEPSS 1%

    phpwind · phpwindMar 3, 2007

  • CVE-2019-6691
    28Monitor

    phpwind 9.0.2.170426 UTF8 allows SQL Injection via the admin.php?m=backup&c=backup&a=doback tabledb[] parameter, related to the "--backup da

    HighCVSS 7.2No exploitEPSS 1%

    phpwind · phpwindJan 23, 2019

  • CVE-2015-4134
    24Monitor

    Open redirect vulnerability in goto.php in phpwind 8.7 allows remote attackers to redirect users to arbitrary web sites and conduct phishing

    MediumCVSS 5.8No exploitEPSS 2%

    phpwind · phpwindMay 28, 2015

  • PHPWind 9.1.0 has XSS vulnerabilities in the c and m parameters of the index.php file.

    MediumCVSS 6.1No exploitEPSS 1%

    phpwind · phpwindJul 9, 2019

  • CVE-2015-4135
    18Monitor

    Cross-site scripting (XSS) vulnerability in goto.php in phpwind 8.7 allows remote attackers to inject arbitrary web script or HTML via the u

    MediumCVSS 4.3No exploitEPSS 2%

    phpwind · phpwindMay 28, 2015