İçeriğe atla
Noroxi

phpgedview kayıtları

phpgedview üreticisine ait 17 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
6
Düzeltme kaydı olan
%11,8
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

17 kayıt
  • CVE-2004-0030
    41Planlayın

    PHP remote file inclusion vulnerability in (1) functions.php, (2) authentication_index.php, and (3) config_gedcom.php for PHPGEDVIEW 2.61 al

    KritikCVSS 9,8Kavram kanıtıEPSS %7

    phpgedview · phpgedview20 Oca 2004

  • CVE-2008-2064
    41Planlayın

    Multiple unspecified vulnerabilities in PhpGedView before 4.1.5 have unknown impact and attack vectors related to "a fundamental design flaw

    KritikCVSS 10,0İstismar yokEPSS %2

    phpgedview · phpgedview2 May 2008

  • CVE-2004-0128
    32İzleyin

    PHP remote file inclusion vulnerability in the GEDCOM configuration script for phpGedView 2.65.1 and earlier allows remote attackers to exec

    YüksekCVSS 7,5Kavram kanıtıEPSS %8

    phpgedview · phpgedview3 Mar 2004

  • CVE-2005-4468
    32İzleyin

    PHP remote file include vulnerability in help_text_vars.php in PHPGedView 3.3.7 and earlier allows remote attackers to execute arbitrary cod

    YüksekCVSS 7,5Kavram kanıtıEPSS %8

    phpgedview · phpgedview21 Ara 2005

  • CVE-2005-4469
    31İzleyin

    Multiple direct static code injection vulnerabilities in PHPGedView 3.3.7 and earlier allow remote attackers to execute arbitrary PHP code v

    YüksekCVSS 7,5İstismar yokEPSS %3

    phpgedview · phpgedview21 Ara 2005

  • CVE-2004-0127
    31İzleyin

    Directory traversal vulnerability in editconfig_gedcom.php for phpGedView 2.65.1 and earlier allows remote attackers to read arbitrary files

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpgedview · phpgedview3 Mar 2004

  • CVE-2004-0065
    31İzleyin

    Multiple SQL injection vulnerabilities in phpGedView before 2.65 allow remote attackers to execute arbitrary SQL via (1) timeline.php and (2

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpgedview · phpgedview17 Şub 2004

  • CVE-2004-0031
    30İzleyin

    PHPGEDVIEW 2.61 allows remote attackers to reinstall the software and change the administrator password via a direct HTTP request to editcon

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpgedview · phpgedview20 Oca 2004

  • CVE-2011-0405
    29İzleyin

    Directory traversal vulnerability in module.php in PhpGedView 4.2.3 and possibly other versions, when magic_quotes_gpc is disabled, allows r

    OrtaCVSS 6,8Kavram kanıtıEPSS %6

    phpgedview · phpgedview10 Oca 2011

  • CVE-2004-0032
    28İzleyin

    Cross-site scripting (XSS) vulnerability in search.php in PHPGEDVIEW 2.61 allows remote attackers to inject arbitrary HTML and web script vi

    OrtaCVSS 6,8Kavram kanıtıEPSS %2

    phpgedview · phpgedview20 Oca 2004

  • CVE-2005-4467
    21İzleyin

    Directory traversal vulnerability in help_text_vars.php in PHPGedView 3.3.7 and earlier allows remote attackers to read and include arbitrar

    OrtaCVSS 5,0Kavram kanıtıEPSS %5

    phpgedview · phpgedview21 Ara 2005

  • CVE-2004-0033
    21İzleyin

    admin.php in PHPGEDVIEW 2.61 allows remote attackers to obtain sensitive information via an action parameter with a phpinfo command.

    OrtaCVSS 5,0Kavram kanıtıEPSS %3

    phpgedview · phpgedview20 Oca 2004

  • CVE-2004-0130
    20İzleyin

    login.php in phpGedView 2.65 and earlier allows remote attackers to obtain sensitive information via an HTTP request to login.php that does

    OrtaCVSS 5,0İstismar yokEPSS %2

    phpgedview · phpgedview3 Mar 2004

  • CVE-2004-0066
    20İzleyin

    phpGedView before 2.65 allows remote attackers to obtain the absolute path of the web server via malformed parameters to (1) indilist.php, (

    OrtaCVSS 5,0İstismar yokEPSS %1

    phpgedview · phpgedview17 Şub 2004

  • CVE-2011-3778
    20İzleyin

    PhpGedView 4.2.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation

    OrtaCVSS 5,0İstismar yokEPSS %1

    phpgedview · phpgedview23 Eyl 2011

  • CVE-2004-0067
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in phpGedView before 2.65 allow remote attackers to inject arbitrary HTML or web script

    OrtaCVSS 4,3Kavram kanıtıEPSS %3

    phpgedview · phpgedview17 Şub 2004

  • CVE-2007-5051
    17İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in PhpGedView 4.1.1 allow remote attackers to inject arbitrary web script or HTML via th

    OrtaCVSS 4,3İstismar yokEPSS %1

    phpgedview · phpgedview23 Eyl 2007