Перейти к содержимому
Noroxi

Записи phpwebthings

9 опубликованных записей вендора phpwebthings.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
7
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    9 записей
    • CVE-2005-4226
      31Наблюдать

      Multiple "potential" SQL injection vulnerabilities in phpWebThings 1.4 Patched might allow remote attackers to execute arbitrary SQL command

      ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

      phpwebthings · phpwebthings14 дек. 2005 г.

    • CVE-2005-4218
      31Наблюдать

      SQL injection vulnerability in forum.php in PHPWebThings 1.4 allows remote attackers to execute arbitrary SQL commands via the msg parameter

      ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

      phpwebthings · phpwebthings14 дек. 2005 г.

    • CVE-2005-3585
      31Наблюдать

      SQL injection vulnerability in forum.php in PhpWebThings 1.4.4 allows remote attackers to execute arbitrary SQL commands via the forum param

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      phpwebthings · phpwebthings16 нояб. 2005 г.

    • CVE-2009-2147
      31Наблюдать

      SQL injection vulnerability in fdown.php in phpWebThings 1.5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the

      ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

      phpwebthings · phpwebthings22 июн. 2009 г.

    • CVE-2005-3676
      30Наблюдать

      SQL injection vulnerability in download.php in PhpWebThings 1.4.4 allows remote attackers to execute arbitrary SQL commands via the file par

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      phpwebthings · phpwebthings18 нояб. 2005 г.

    • CVE-2006-6042
      29Наблюдать

      PHP remote file inclusion vulnerability in core/editor.php in phpWebThings 1.5.2 and earlier, when register_globals is enabled, allows remot

      СредняяCVSS 6,8Proof of conceptEPSS 6 %

      phpwebthings · phpwebthings21 нояб. 2006 г.

    • CVE-2007-3141
      28Наблюдать

      PHP remote file inclusion vulnerability in core/editor.php in phpWebThings 1.5.2 allows remote attackers to execute arbitrary PHP code via a

      СредняяCVSS 6,8Proof of conceptEPSS 2 %

      phpwebthings · phpwebthings11 июн. 2007 г.

    • CVE-2009-2081
      18Наблюдать

      Directory traversal vulnerability in help.php in phpWebThings 1.5.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers

      СредняяCVSS 4,3Proof of conceptEPSS 3 %

      phpwebthings · phpwebthings16 июн. 2009 г.

    • CVE-2005-3584
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in forum.php in PhpWebThings 1.4.4 allows remote attackers to inject arbitrary web script or HTML v

      СредняяCVSS 4,3Proof of conceptEPSS 1 %

      phpwebthings · phpwebthings16 нояб. 2005 г.