Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2016-10751 osClass 3.6.1 allows oc-admin/plugins.php Directory Traversal via the plugin parameter. This is exploitable for remote PHP code execution because an … Osclass Mitigation only Fix from $1,9502019-05-24 MEDIUM 6.1 CVE-2018-14481 Osclass 3.7.4 has XSS via the query string to index.php, a different vulnerability than CVE-2014-6280. Osclass No fix yet Fix from $1,6002019-01-03 MEDIUM 6.8 CVE-2014-8085 Unrestricted file upload vulnerability in the CWebContact::doModel method in oc-includes/osclass/controller/contact.php in OSClass before 3.4.3 allow… Osclass after 3.4.2 Fix from $1,6002015-01-05 HIGH 7.5 CVE-2014-8084 Directory traversal vulnerability in oc-includes/osclass/controller/ajax.php in OSClass before 3.4.3 allows remote attackers to include and execute a… Osclass after 3.4.2 Fix from $1,9502015-01-05 HIGH 7.5 CVE-2014-8083 SQL injection vulnerability in the Search::setJsonAlert method in OSClass before 3.4.3 allows remote attackers to execute arbitrary SQL commands via … Osclass after 3.4.2 Fix from $1,9502015-01-05 MEDIUM 5.0 CVE-2014-6308EPSS 22% Directory traversal vulnerability in OSClass before 3.4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter in… Osclass after 3.4.1 Fix from $1,6002014-10-20 MEDIUM 6.5 CVE-2012-5162 Multiple SQL injection vulnerabilities in oc-admin/ajax/ajax.php in OSClass before 2.3.5 allow remote attackers to execute arbitrary SQL commands via… Osclass after 2.3.4 Fix from $1,6002012-09-26 HIGH 7.5 CVE-2012-0973 Multiple SQL injection vulnerabilities in OSClass before 2.3.5 allow remote attackers to execute arbitrary SQL commands via the sCategory parameter t… Osclass after 2.3.4 Fix from $1,9502012-09-25