İçeriğe atla
Noroxi

webspell kayıtları

webspell üreticisine ait 21 yayımlanmış kayıt.

Tüm kayıtlar

21 kayıt
  • CVE-2007-1160
    41Planlayın

    webSPELL 4.0, and possibly later versions, allows remote attackers to bypass authentication via a ws_auth cookie, a different vulnerability

    KritikCVSS 10,0İstismar yokEPSS %3

    webspell · webspell2 Mar 2007

  • CVE-2007-4028
    30İzleyin

    Absolute path traversal vulnerability in index.php in Webspell 4.01.02 allows remote attackers to include and execute arbitrary local files

    YüksekCVSS 7,5İstismar yokEPSS %2

    webspell · webspell26 Tem 2007

  • CVE-2010-4861
    30İzleyin

    SQL injection vulnerability in asearch.php in webSPELL 4.2.1 allows remote attackers to execute arbitrary SQL commands via the search parame

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    webspell · webspell5 Eki 2011

  • CVE-2006-0728
    30İzleyin

    SQL injection vulnerability in search.php in webSPELL 4.01.00 and earlier allows remote attackers to inject arbitrary SQL commands via the t

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    webspell · webspell16 Şub 2006

  • CVE-2007-0502
    30İzleyin

    SQL injection vulnerability in gallery.php in webSPELL 4.01.02 allows remote attackers to execute arbitrary SQL commands via the picID param

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    webspell · webspell25 Oca 2007

  • CVE-2006-5388
    30İzleyin

    SQL injection vulnerability in index.php in WebSPELL 4.01.01 and earlier allows remote attackers to execute arbitrary SQL commands via the g

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    webspell · webspell18 Eki 2006

  • CVE-2007-1163
    30İzleyin

    SQL injection vulnerability in printview.php in webSPELL 4.01.02 and earlier allows remote attackers to execute arbitrary SQL commands via t

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    webspell · webspell2 Mar 2007

  • CVE-2007-0492
    30İzleyin

    Multiple SQL injection vulnerabilities in gallery.php in webSPELL 4.01.02 and earlier allow remote attackers to execute arbitrary SQL comman

    YüksekCVSS 7,5İstismar yokEPSS %1

    webspell · webspell24 Oca 2007

  • CVE-2009-1912
    28İzleyin

    Directory traversal vulnerability in src/func/language.php in webSPELL 4.2.0e and earlier allows remote attackers to include and execute arb

    OrtaCVSS 6,8Kavram kanıtıEPSS %3

    webspell · webspell4 Haz 2009

  • CVE-2007-1019
    27İzleyin

    SQL injection vulnerability in news.php in webSPELL 4.01.02, when register_globals is enabled, allows remote attackers to execute arbitrary

    OrtaCVSS 6,8Kavram kanıtıEPSS %1

    webspell · webspell21 Şub 2007

  • CVE-2007-1154
    27İzleyin

    SQL injection vulnerability in webSPELL allows remote attackers to execute arbitrary SQL commands via a ws_auth cookie, a different vulnerab

    OrtaCVSS 6,8İstismar yokEPSS %1

    webspell · webspell2 Mar 2007

  • CVE-2007-2369
    23İzleyin

    Directory traversal vulnerability in picture.php in WebSPELL 4.01.02 and earlier, when PHP before 4.3.0 is used, allows remote attackers to

    OrtaCVSS 5,0Kavram kanıtıEPSS %8

    php · php30 Nis 2007

  • CVE-2006-4782
    22İzleyin

    src/index.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication and gain s

    OrtaCVSS 5,4Kavram kanıtıEPSS %3

    webspell · webspell14 Eyl 2006

  • CVE-2007-2368
    21İzleyin

    picture.php in WebSPELL 4.01.02 and earlier allows remote attackers to read arbitrary files via the file parameter.

    OrtaCVSS 5,0Kavram kanıtıEPSS %2

    webspell · webspell30 Nis 2007

  • CVE-2006-4783
    20İzleyin

    SQL injection vulnerability in squads.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to exec

    OrtaCVSS 5,1İstismar yokEPSS %1

    webspell · webspell14 Eyl 2006

  • CVE-2007-6309
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in webSPELL 4.1.2 allow remote attackers to inject arbitrary web script or

    OrtaCVSS 4,3Kavram kanıtıEPSS %4

    webspell · webspell11 Ara 2007

  • CVE-2009-1408
    18İzleyin

    Cross-site scripting (XSS) vulnerability in webSPELL 4.2.0c allows remote attackers to inject arbitrary web script or HTML allows remote att

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    webspell · webspell24 Nis 2009

  • CVE-2007-1155
    18İzleyin

    Unrestricted file upload vulnerability in webSPELL allows remote authenticated administrators to upload and execute arbitrary PHP code via t

    OrtaCVSS 4,6İstismar yokEPSS %1

    webspell · webspell2 Mar 2007

  • CVE-2008-0574
    17İzleyin

    Cross-site scripting (XSS) vulnerability in index.php in webSPELL 4.01.02 allows remote attackers to inject arbitrary web script or HTML via

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    webspell · webspell4 Şub 2008

  • CVE-2008-1481
    17İzleyin

    Cross-site scripting (XSS) vulnerability in index.php in webSPELL 4.1.2 allows remote attackers to inject arbitrary web script or HTML via t

    OrtaCVSS 4,3Kavram kanıtıEPSS %1

    webspell · webspell24 Mar 2008

  • CVE-2008-0575
    17İzleyin

    Cross-site request forgery (CSRF) vulnerability in admin/admincenter.php in webSPELL 4.01.02 allows remote attackers to assign the superadmi

    OrtaCVSS 4,3İstismar yokEPSS %1

    webspell · webspell4 Şub 2008