Skip to content
Noroxi

ravenphpscripts records

6 published records for vendor ravenphpscripts.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • CVE-2009-0677
    29Monitor

    avatarlist.php in the Your Account module, reached through modules.php, in Raven Web Services RavenNuke 2.30 allows remote authenticated use

    MediumCVSS 6.5Proof of conceptEPSS 9%

    ravenphpscripts · ravennukeFeb 22, 2009

  • CVE-2009-0673
    27Monitor

    Eval injection vulnerability in the Custom Fields feature in the Your Account module in Raven Web Services RavenNuke 2.30 allows remote auth

    MediumCVSS 6.5Proof of conceptEPSS 3%

    ravenphpscripts · ravennukeFeb 22, 2009

  • CVE-2009-0672
    26Monitor

    SQL injection vulnerability in the Resend_Email module in Raven Web Services RavenNuke 2.30 allows remote authenticated administrators to ex

    MediumCVSS 6.5Proof of conceptEPSS 1%

    ravenphpscripts · ravennukeFeb 22, 2009

  • CVE-2009-0674
    25Monitor

    images/captcha.php in Raven Web Services RavenNuke 2.30, when register_globals and display_errors are enabled, allows remote attackers to de

    MediumCVSS 6.0Proof of conceptEPSS 2%

    ravenphpscripts · ravennukeFeb 22, 2009

  • CVE-2009-0678
    21Monitor

    images/captcha.php in RavenNuke 2.30 allows remote attackers to obtain sensitive information via an aFonts array parameter value that does n

    MediumCVSS 5.0Proof of conceptEPSS 3%

    ravenphpscripts · ravennukeFeb 22, 2009

  • CVE-2009-0679
    17Monitor

    Cross-site scripting (XSS) vulnerability in the Your Account module in RavenNuke 2.30 allows remote attackers to inject arbitrary web script

    MediumCVSS 4.3No exploitEPSS 1%

    ravenphpscripts · ravennukeFeb 22, 2009