Перейти к содержимому
Noroxi

Записи phpkit

20 опубликованных записей вендора phpkit.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
9
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

20 записей
  • CVE-2016-10758
    35Наблюдать

    PHPKIT 1.6.6 allows arbitrary File Upload, as demonstrated by a .php file to pkinc/admin/mediaarchive.php and pkinc/func/default.php via the

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    phpkit · phpkit24 мая 2019 г.

  • CVE-2005-2683
    31Наблюдать

    Multiple SQL injection vulnerabilities in PHPKit 1.6.1 allow remote attackers to execute arbitrary SQL commands via the (1) letter parameter

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    phpkit · phpkit23 авг. 2005 г.

  • CVE-2005-3553
    31Наблюдать

    Multiple SQL injection vulnerabilities in include.php in PHPKIT 1.6.1 R2 and earlier allow remote attackers to execute arbitrary SQL command

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    phpkit · phpkit16 нояб. 2005 г.

  • CVE-2006-7115
    30Наблюдать

    SQL injection vulnerability in PHPKit 1.6.1 RC2 allows remote attackers to inject arbitrary SQL commands via the catid parameter to include.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    phpkit · phpkit5 мар. 2007 г.

  • CVE-2004-1538
    30Наблюдать

    SQL injection vulnerability in include.php in PHPKIT 1.6.03 through 1.6.1 allows remote attackers to execute arbitrary SQL commands via the

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    phpkit · phpkit31 дек. 2004 г.

  • CVE-2007-6134
    30Наблюдать

    SQL injection vulnerability in pkinc/public/article.php in PHPKIT 1.6.4pl1 allows remote attackers to execute arbitrary SQL commands via the

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    phpkit · phpkit27 нояб. 2007 г.

  • CVE-2007-0179
    30Наблюдать

    SQL injection vulnerability in comment.php in PHPKIT 1.6.1 R2 allows remote attackers to execute arbitrary SQL commands via the subid parame

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    phpkit · phpkit10 янв. 2007 г.

  • CVE-2003-1187
    28Наблюдать

    Cross-site scripting (XSS) vulnerability in include.php in PHPKIT 1.6.02 and 1.6.03 allows remote attackers to inject arbitrary web script o

    СредняяCVSS 6,8Proof of conceptEPSS 4 %

    phpkit · phpkit2 нояб. 2003 г.

  • CVE-2005-4424
    27Наблюдать

    Directory traversal vulnerability in PHPKIT 1.6.1 R2 and earlier might allow remote authenticated users to execute arbitrary PHP code via a

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    phpkit · phpkit20 дек. 2005 г.

  • CVE-2006-1507
    27Наблюдать

    Cross-site scripting (XSS) vulnerability in PHPKIT 1.6.03 allows remote attackers to inject arbitrary web script or HTML via the error param

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    phpkit · phpkit29 мар. 2006 г.

  • CVE-2008-7193
    27Наблюдать

    PHPKIT 1.6.4 PL1 includes the session ID in the URL, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks by r

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    phpkit · phpkit9 сент. 2009 г.

  • CVE-2006-0785
    25Наблюдать

    Absolute path traversal vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier allows remote attackers to include and execute ar

    СредняяCVSS 6,4Эксплойта нетEPSS 2 %

    phpkit · phpkit19 февр. 2006 г.

  • CVE-2006-1773
    25Наблюдать

    SQL injection vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier allows remote attackers to execute arbitrary SQL commands v

    СредняяCVSS 6,4Proof of conceptEPSS 1 %

    phpkit · phpkit13 апр. 2006 г.

  • CVE-2005-3554
    21Наблюдать

    Multiple eval injection vulnerabilities in the help function in PHPKIT 1.6.1 R2 and earlier, when register_globals is enabled, allow remote

    СредняяCVSS 5,1Эксплойта нетEPSS 3 %

    phpkit · phpkit16 нояб. 2005 г.

  • CVE-2006-0786
    21Наблюдать

    Incomplete blacklist vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier, with allow_url_fopen enabled, allows remote attacke

    СредняяCVSS 5,1Proof of conceptEPSS 2 %

    phpkit · phpkit19 февр. 2006 г.

  • CVE-2005-3552
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in PHPKIT 1.6.1 R2 and earlier allow remote attackers to inject arbitrary web script or

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    phpkit · phpkit16 нояб. 2005 г.

  • CVE-2015-1052
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in the poll archive in PHPKIT 1.6.6 (Build 160014) allows remote attackers to inject arbitrary web

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    phpkit · phpkit15 янв. 2015 г.

  • CVE-2004-1537
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in popup.php in PHPKIT 1.6.03 through 1.6.1 allows remote attackers to execute arbitrary web script

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    phpkit · phpkit31 дек. 2004 г.

  • CVE-2005-2699
    18Наблюдать

    Unrestricted file upload vulnerability in admin/admin.php in PHPKit 1.6.1 allows remote authenticated administrators to execute arbitrary PH

    СредняяCVSS 4,6Эксплойта нетEPSS 0 %

    phpkit · phpkit26 авг. 2005 г.

  • CVE-2004-1879
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in PHPKIT 1.6.03 allows allows remote attackers to inject arbitrary web script or HTML via forum me

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    phpkit · phpkit31 дек. 2004 г.