Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2009-4577 SQL injection vulnerability in the MDForum module 2.x through 2.07 for MAXdev MDPro allows remote attackers to execute arbitrary SQL commands via the… Mdforum No fix yet Fix from $1,9502010-01-06 HIGH 7.5 CVE-2008-7038 SQL injection vulnerability in the My_eGallery module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the gid parameter in… My Egallery No fix yet Fix from $1,9502009-08-24 HIGH 7.5 CVE-2009-2618 SQL injection vulnerability in the Surveys (aka NS-Polls) module in MDPro (MD-Pro) 1.083.x allows remote attackers to execute arbitrary SQL commands … Mdpro No fix yet Fix from $1,9502009-07-27 HIGH 7.5 CVE-2009-0728 SQL injection vulnerability in the My_eGallery module for MAXdev MDPro (MD-Pro) and Postnuke allows remote attackers to execute arbitrary SQL command… My Egallery No fix yet Fix from $1,9502009-02-24 HIGH 7.5 CVE-2007-0623 SQL injection vulnerability in index.php in MAXdev MDPro 1.0.76 allows remote attackers to execute arbitrary SQL commands via the startrow parameter. Mdpro No fix yet Fix from $1,9502007-01-31 MEDIUM 5.0 CVE-2007-0624 user.php in MAXdev MDPro 1.0.76 allows remote attackers to obtain the full path via a ' (quote) character, and possibly other invalid values, in the … Mdpro Mitigation only Fix from $1,6002007-01-31 HIGH 7.5 CVE-2005-2885EPSS 9% The Downloads page in MAXdev MD-Pro 1.0.73, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which… Md Pro No fix yet Fix from $1,9502005-09-14 MEDIUM 5.0 CVE-2005-2887 MAXdev MD-Pro 1.0.73, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct request to (1) wiki.php, (2… Md Pro No fix yet Fix from $1,6002005-09-14