Skip to content
Noroxi

pl-php records

3 published records for vendor pl-php.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      3 records
      • CVE-2007-2007
        31Monitor

        admin.php in pL-PHP beta 0.9 allows remote attackers to bypass authentication by setting the is_admin parameter to 1.

        HighCVSS 7.5Proof of conceptEPSS 3%

        pl-php · pl-phpApr 12, 2007

      • CVE-2007-2008
        31Monitor

        Directory traversal vulnerability in admin.php in pL-PHP beta 0.9 allows remote attackers to include and execute arbitrary local files via a

        HighCVSS 7.5Proof of conceptEPSS 2%

        pl-php · pl-phpApr 12, 2007

      • CVE-2007-2006
        30Monitor

        Multiple SQL injection vulnerabilities in login.php in pL-PHP beta 0.9 allow remote attackers to execute arbitrary SQL commands via the (1)

        HighCVSS 7.5Proof of conceptEPSS 1%

        pl-php · pl-phpApr 12, 2007