Vulnerability index

Browse CVEs

13 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ideabox HIGH 7.5
CVE-2008-5199

PHP remote file inclusion vulnerability in include.php in PHPOutsourcing IdeaBox (aka IdeBox) 1.1 allows remote attackers to execute arbitrary PHP co…

No fix yet
Fix from $1,950 2008-11-21
Zorum HIGH 7.5
CVE-2006-3332

SQL injection vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to execute arbitrary SQL commands via the (1) offset, (2) tid, (3…

Mitigation only
Fix from $1,950 2006-06-30
Noahs Classifieds HIGH 7.5
CVE-2006-0879

SQL injection vulnerability in the search tool in Noah's Classifieds 1.3 allows remote attackers to execute arbitrary SQL commands via unspecified at…

No fix yet
Fix from $1,950 2006-02-24
Noahs Classifieds HIGH 7.5
CVE-2006-0881EPSS 8%

Multiple PHP remote file include vulnerabilities in gorum/gorumlib.php in Noah's Classifieds 1.3, when register_globals is enabled, allow remote atta…

No fix yet
Fix from $1,950 2006-02-24
Noahs Classifieds MEDIUM 5.0
CVE-2006-0878

Noah's Classifieds 1.3 allows remote attackers to obtain the installation path via a direct request to include files, as demonstrated by classifieds/…

No fix yet
Fix from $1,600 2006-02-24
Noahs Classifieds MEDIUM 5.0
CVE-2006-0882

Directory traversal vulnerability in include.php in Noah's Classifieds 1.3 allows remote attackers to include arbitrary local files via the otherTemp…

No fix yet
Fix from $1,600 2006-02-24
Zorum HIGH 7.5
CVE-2005-4619

SQL injection vulnerability in index.php in phpoutsourcing Zorum Forum 3.5 and earlier allows remote attackers to execute arbitrary SQL commands via …

No fix yet
Fix from $1,950 2005-12-31
Noahs Classifieds HIGH 7.5
CVE-2005-2979

SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitrary SQL commands via the rolli…

No fix yet
Fix from $1,950 2005-09-20
Zorum HIGH 7.5
CVE-2005-2651EPSS 5%

gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv parameter.

No fix yet
Fix from $1,950 2005-08-23
Zorum MEDIUM 5.0
CVE-2005-2652

Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3) attach.ph…

No fix yet
Fix from $1,600 2005-08-23
Zorum HIGH 7.5
CVE-2005-0676

index.php in Zorum 3.5 allows remote attackers to trigger an SQL error, and possibly inject arbitrary SQL commands, via the search capability.

No fix yet
Fix from $1,950 2005-05-04
Zorum MEDIUM 5.0
CVE-2005-0677

index.php for Zorum 3.5 allows remote attackers to perform certain actions as other users by modifying the id parameter.

No fix yet
Fix from $1,600 2005-05-02
Zorum MEDIUM 5.0
CVE-2003-1089

index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the path in a P…

No fix yet
Fix from $1,600 2003-12-31