Vulnerability index

Browse CVEs

49 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2004-0736 The search module in Php-Nuke allows remote attackers to gain sensitive information via the (1) "**" or (2) "+" search patterns, which reveals the pa… Php Nuke Mitigation only Fix from $1,6002004-07-27 HIGH 7.5 CVE-2004-2044EPSS 11% PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLite 3.1, and OSC2Nuke 7x do not… Php Nuke No fix yet Fix from $1,9502004-06-01 MEDIUM 5.0 CVE-2004-1998 The Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to gain sensitive information via an invalid show parameter to modules.php, … Php Nuke No fix yet Fix from $1,6002004-05-05 HIGH 7.5 CVE-2004-1972 SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execute arbitrary SQL code via the … Php Nuke No fix yet Fix from $1,9502004-04-26 HIGH 7.5 CVE-2004-1929EPSS 7% SQL injection vulnerability in the bblogin function in functions.php in PHP-Nuke 6.x through 7.2 allows remote attackers to bypass authentication and… Php Nuke No fix yet Fix from $1,9502004-04-13 HIGH 7.5 CVE-2004-1932 SQL injection vulnerability in (1) auth.php and (2) admin.php in PHP-Nuke 6.x through 7.2 allows remote attackers to execute arbitrary SQL code and c… Php Nuke No fix yet Fix from $1,9502004-04-12 MEDIUM 5.0 CVE-2004-1839 MS Analysis module 2.0 for PHP-Nuke allows remote attackers to obtain sensitive information via a direct request to (1) browsers.php, (2) mstrack.php… Php Nuke Mitigation only Fix from $1,6002004-03-22 MEDIUM 5.0 CVE-2004-1830 error.php in Error Manager 2.1 for PHP-Nuke 6.0 allows remote attackers to obtain sensitive information via an invalid (1) language, (2) newlang, or … Php Nuke Mitigation only Fix from $1,6002004-03-18 HIGH 7.5 CVE-2003-1435 SQL injection vulnerability in PHP-Nuke 5.6 and 6.0 allows remote attackers to execute arbitrary SQL commands via the days parameter to the search mo… Php Nuke No fix yet Fix from $1,9502003-12-31 MEDIUM 5.0 CVE-2003-1526 PHP-Nuke 7.0 allows remote attackers to obtain the installation path via certain characters such as (1) ", (2) ', or (3) > in the search field, which… Php Nuke No fix yet Fix from $1,6002003-12-31 MEDIUM 5.0 CVE-2002-2032EPSS 6% sql_layer.php in PHP-Nuke 5.4 and earlier does not restrict access to debugging features, which allows remote attackers to gain SQL query information… Php Nuke No fix yet Fix from $1,6002002-12-31 MEDIUM 5.0 CVE-2002-0483EPSS 8% index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to… Php Nuke No fix yet Fix from $1,6002002-08-12 HIGH 7.5 CVE-2002-0206EPSS 6% index.php in Francisco Burzi PHP-Nuke 5.3.1 and earlier, and possibly other versions before 5.5, allows remote attackers to execute arbitrary PHP cod… Php Nuke Mitigation only Fix from $1,9502002-05-16 MEDIUM 5.0 CVE-2001-0854 PHP-Nuke 5.2 allows remote attackers to copy and delete arbitrary files by calling case.filemanager.php with admin.php as an argument, which sets the… Php Nuke Mitigation only Fix from $1,6002001-12-06 HIGH 7.5 CVE-2001-0911 PHP-Nuke 5.1 stores user and administrator passwords in a base-64 encoded cookie, which could allow remote attackers to gain privileges by stealing o… Php Nuke Mitigation only Fix from $1,9502001-11-21 HIGH 10.0 CVE-2001-1025 PHP-Nuke 5.x allows remote attackers to perform arbitrary SQL operations by modifying the "prefix" variable when calling any scripts that do not alre… Php Nuke No fix yet Fix from $1,9502001-08-31 HIGH 10.0 CVE-2001-0320 bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting … Php Nuke No fix yet Fix from $1,9502001-05-03 HIGH 7.5 CVE-2001-0292 PHP-Nuke 4.4.1a allows remote attackers to modify a user's email address and obtain the password by guessing the user id (UID) and calling user.php w… Php Nuke No fix yet Fix from $1,9502001-05-03 MEDIUM 5.0 CVE-2001-0321 opendir.php script in PHP-Nuke allows remote attackers to read arbitrary files by specifying the filename as an argument to the requesturl parameter. Php Nuke No fix yet Fix from $1,6002001-05-03