İçeriğe atla
Noroxi

php arena kayıtları

php arena üreticisine ait 32 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
14
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

      Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

      CWE

      Tüm kayıtlar

      32 kayıt
      • CVE-2006-2361
        31İzleyin

        PHP remote file inclusion vulnerability in pafiledb_constants.php in Download Manager (mxBB pafiledb) integration, as used with phpBB, allow

        YüksekCVSS 7,5Kavram kanıtıEPSS %3

        mxbb · mxbb portal15 May 2006

      • CVE-2006-5079
        31İzleyin

        PHP remote file inclusion vulnerability in class.mysql.php in Matt Humphrey paBugs 2.0 Beta 3 and earlier allows remote attackers to execute

        YüksekCVSS 7,5Kavram kanıtıEPSS %3

        php arena · pabugs28 Eyl 2006

      • CVE-2007-3808
        31İzleyin

        SQL injection vulnerability in includes/search.php in paFileDB 3.6 allows remote attackers to execute arbitrary SQL commands via the categor

        YüksekCVSS 7,5Kavram kanıtıEPSS %2

        php arena · pafiledb16 Tem 2007

      • CVE-2005-2000
        31İzleyin

        Multiple SQL injection vulnerabilities in paFileDB 3.1 and earlier allow remote attackers to execute arbitrary SQL commands via the formname

        YüksekCVSS 7,5Kavram kanıtıEPSS %2

        php arena · pafiledb15 Haz 2005

      • CVE-2005-0781
        31İzleyin

        SQL injection vulnerability in (1) viewall.php and (2) category.php in paFileDB 3.1 and earlier allows remote attackers to execute arbitrary

        YüksekCVSS 7,5Kavram kanıtıEPSS %2

        php arena · pafiledb2 May 2005

      • CVE-2005-0327
        31İzleyin

        pafiledb.php in Pafiledb 3.1 may allow remote attackers to execute arbitrary PHP code via a modified action parameter that is used in an inc

        YüksekCVSS 7,5İstismar yokEPSS %2

        php arena · pafiledb2 May 2005

      • CVE-2005-2723
        30İzleyin

        SQL injection vulnerability in auth.php in PaFileDB 3.1, when authmethod is set to cookies, allows remote attackers to execute arbitrary SQL

        YüksekCVSS 7,5İstismar yokEPSS %1

        php arena · pafiledb30 Ağu 2005

      • CVE-2005-2012
        30İzleyin

        Multiple SQL injection vulnerabilities in login in paFAQ 1.0 Beta 4 allow remote attackers to execute arbitrary SQL commands and bypass auth

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        php arena · pafaq20 Haz 2005

      • CVE-2005-4329
        30İzleyin

        SQL injection vulnerability in pafiledb.php in PHP Arena paFileDB Extreme Edition RC 5 and earlier allows remote attackers to execute arbitr

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        php arena · pafiledb17 Ara 2005

      • CVE-2005-0646
        30İzleyin

        SQL injection vulnerability in auth.php in paNews 2.0.4b allows remote attackers to execute arbitrary SQL via the mysql_prefix parameter.

        YüksekCVSS 7,5İstismar yokEPSS %1

        php arena · panews2 May 2005

      • CVE-2007-4183
        30İzleyin

        SQL injection vulnerability in main.php in paBugs 2.0 Beta 3 and earlier allows remote attackers to execute arbitrary SQL commands via the c

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        php arena · pabugs7 Ağu 2007

      • CVE-2006-2209
        25İzleyin

        Multiple SQL injection vulnerabilities in index.php in PHP Arena paCheckBook 1.1 allow remote attackers to execute arbitrary SQL commands vi

        OrtaCVSS 6,4Kavram kanıtıEPSS %1

        php arena · pacheckbook5 May 2006

      • CVE-2005-0475
        25İzleyin

        SQL injection vulnerability in paFAQ Beta4, and possibly other versions, allows remote attackers to execute arbitrary SQL code via the (1) o

        OrtaCVSS 6,4Kavram kanıtıEPSS %1

        php arena · pafaq30 Mar 2005

      • CVE-2005-0952
        22İzleyin

        Cross-site scripting vulnerability in pafiledb.php in PaFileDB 3.1 allows remote attackers to inject arbitrary web script or HTML via the id

        OrtaCVSS 5,0Kavram kanıtıEPSS %6

        php arena · pafiledb2 May 2005

      • CVE-2005-0780
        22İzleyin

        paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) auth.php, (2) login.php, (3) ca

        OrtaCVSS 5,0Kavram kanıtıEPSS %5

        php arena · pafiledb12 Mar 2005

      • CVE-2005-0647
        21İzleyin

        admin_setup.php in paNews 2.0.4b allows remote attackers to inject arbitrary PHP code via the (1) $form[comments] or (2) $form[autoapprove]

        OrtaCVSS 5,0Kavram kanıtıEPSS %4

        php arena · panews2 May 2005

      • CVE-2004-1219
        21İzleyin

        paFileDB 3.1, when using sessions authentication and while the administrator logs on, allows remote attackers to read the administrator's pa

        OrtaCVSS 5,0İstismar yokEPSS %2

        php arena · pafiledb10 Oca 2005

      • CVE-2005-2001
        21İzleyin

        Directory traversal vulnerability in pafiledb.php in paFileDB 3.1 and earlier allows remote attackers to include arbitrary files via a ..

        OrtaCVSS 5,0İstismar yokEPSS %2

        php arena · pafiledb15 Haz 2005

      • CVE-2005-2013
        20İzleyin

        paFAQ 1.0 Beta 4 allows remote attackers to obtain sensitive information via a direct request to admin/backup.php, which contains a backup o

        OrtaCVSS 5,0İstismar yokEPSS %1

        php arena · pafaq20 Haz 2005

      • CVE-2005-0724
        20İzleyin

        paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via (1) an invalid str parameter to pafiledb.php, or a dire

        OrtaCVSS 5,0İstismar yokEPSS %1

        php arena · pafiledb2 May 2005

      • CVE-2004-1974
        20İzleyin

        paFileDB 3.1 allows remote attackers to gain sensitive information via a direct request to (1) login.php, (2) category.php, (3) search.php,

        OrtaCVSS 5,0İstismar yokEPSS %1

        php arena · pafiledb27 Nis 2004

      • CVE-2005-0326
        20İzleyin

        pafiledb.php in PaFileDB 3.1 allows remote attackers to gain sensitive information via an invalid or missing action parameter, which reveals

        OrtaCVSS 5,0İstismar yokEPSS %1

        php arena · pafiledb2 May 2005

      • CVE-2005-0782
        18İzleyin

        Cross-site scripting (XSS) vulnerability in (1) viewall.php and (2) category.php for paFileDB 3.1 and earlier allows remote attackers to inj

        OrtaCVSS 4,3Kavram kanıtıEPSS %4

        php arena · pafiledb2 May 2005

      • CVE-2004-1551
        18İzleyin

        Cross-site scripting (XSS) vulnerability in the (1) email or (2) file modules in paFileDB 3.1 Final allows remote attackers to execute arbit

        OrtaCVSS 4,3Kavram kanıtıEPSS %3

        php arena · pafiledb31 Ara 2004

      • CVE-2002-1929
        18İzleyin

        Cross-site scripting (XSS) vulnerability in pafiledb.php in PHP Arena paFileDB 1.1.3 through 3.0 allows remote attackers to inject arbitrary

        OrtaCVSS 4,3Kavram kanıtıEPSS %2

        php arena · pafiledb31 Ara 2002