Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Phpmybackuppro HIGH 7.1
CVE-2024-5414

A vulnerability have been discovered in PhpMyBackupPro affecting version 2.3 that could allow an attacker to execute XSS through /phpmybackuppro/get_…

Mitigation only
Fix from $1,950 2024-05-28
Phpmybackuppro HIGH 7.1
CVE-2024-5415

A vulnerability have been discovered in PhpMyBackupPro affecting version 2.3 that could allow an attacker to execute XSS through /phpmybackuppro/back…

Mitigation only
Fix from $1,950 2024-05-28
Phpmybackuppro MEDIUM 6.1
CVE-2024-5413

A vulnerability have been discovered in PhpMyBackupPro affecting version 2.3 that could allow an attacker to execute XSS through /phpmybackuppro/sche…

Mitigation only
Fix from $1,600 2024-05-28
Phpmybackuppro HIGH 8.1
CVE-2015-3637

SQL injection vulnerability in phpMyBackupPro when run in multi-user mode before 2.5 allows remote attackers to execute arbitrary SQL commands via th…

Fix: 2.5+
Fix from $1,950 2017-12-28
Phpmybackuppro HIGH 7.5
CVE-2015-4180

Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 through 2.4 allows remote attackers to read arbitrary files via a .. (dot dot…

Mitigation only
Fix from $1,950 2017-08-25
Phpmybackuppro HIGH 7.5
CVE-2015-4181EPSS 12%

Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 through 2.5 allows remote attackers to read arbitrary files via a .. (dot dot…

Mitigation only
Fix from $1,950 2017-08-25
Phpmybackuppro HIGH 8.8
CVE-2015-3638

phpMyBackupPro before 2.5 does not validate integer input, which allows remote authenticated users to execute arbitrary PHP code by injecting scripts…

Fix: after 2.5
Fix from $1,950 2017-07-21
Phpmybackuppro HIGH 8.8
CVE-2015-3639

phpMyBackupPro 2.5 and earlier does not properly sanitize input strings, which allows remote authenticated users to execute arbitrary PHP code by sto…

Fix: after 2.5
Fix from $1,950 2017-07-21
Phpmybackuppro HIGH 7.5
CVE-2015-3640

phpMyBackupPro 2.5 and earlier does not properly escape the "." character in request parameters, which allows remote authenticated users with knowled…

Fix: after 2.5
Fix from $1,950 2017-07-21
Phpmybackuppro MEDIUM 5.0
CVE-2009-4050EPSS 8%

Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 allows remote attackers to read arbitrary files via directory traversal seque…

Mitigation only
Fix from $1,600 2009-11-23