Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Hosting Index HIGH 7.5
CVE-2008-6115

SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL commands via the id parameter…

No fix yet
Fix from $1,950 2009-02-11
Hosting Index MEDIUM 6.8
CVE-2008-2083

SQL injection vulnerability in directory.php in Prozilla Hosting Index, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitra…

No fix yet
Fix from $1,600 2008-05-05
Cheats HIGH 7.5
CVE-2008-1863

SQL injection vulnerability in view_reviews.php in Prozilla Cheat Script (aka Cheats) 2.0 allows remote attackers to execute arbitrary SQL commands v…

No fix yet
Fix from $1,950 2008-04-17
Prozilla Freelancers HIGH 7.5
CVE-2008-1864

SQL injection vulnerability in project.php in Prozilla Freelancers allows remote attackers to execute arbitrary SQL commands via the project paramete…

No fix yet
Fix from $1,950 2008-04-17
Entertainers HIGH 7.5
CVE-2008-1788

SQL injection vulnerability in directory.php in Prozilla Entertainers 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via t…

No fix yet
Fix from $1,950 2008-04-15
Forum MEDIUM 6.8
CVE-2008-1789

SQL injection vulnerability in forum.php in Prozilla Forum allows remote attackers to execute arbitrary SQL commands via the forum parameter.

No fix yet
Fix from $1,600 2008-04-15
Topsites HIGH 7.5
CVE-2008-1784

Prozilla Topsites 1.0 allows remote attackers to perform administrative actions via a direct request to (1) addu.php, (2) editu.php, and (3) uidx.php…

No fix yet
Fix from $1,950 2008-04-15
Reviews MEDIUM 6.4
CVE-2008-1783

Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users via a modified UserID parameter in a direct request to siteadmin/DeleteUser.ph…

No fix yet
Fix from $1,600 2008-04-15
Top 100 MEDIUM 5.5
CVE-2008-1785

delete.php in Prozilla Top 100 1.2 allows remote authenticated users to delete statistics and accounts of arbitrary users via a modified s parameter.

No fix yet
Fix from $1,600 2008-04-15
Webring MEDIUM 6.8
CVE-2007-4362

SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter.

No fix yet
Fix from $1,600 2007-08-15
Prozilla Pub Site Directory HIGH 7.5
CVE-2007-4258

SQL injection vulnerability in directory.php in Prozilla Pub Site Directory allows remote attackers to execute arbitrary SQL commands via the cat par…

No fix yet
Fix from $1,950 2007-08-08
Prozilla Directory Script HIGH 7.5
CVE-2007-3809

Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id parameter…

No fix yet
Fix from $1,950 2007-07-17
Prozilla Download Accelerator HIGH 7.5
CVE-2005-2961EPSS 9%

Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers…

Patch available
Fix from $1,950 2005-10-05
Prozilla Download Accelerator HIGH 7.5
CVE-2005-0523EPSS 10%

Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the Loc…

Patch available
Fix from $1,950 2005-05-02
Prozilla Download Accelerator HIGH 10.0
CVE-2004-1120EPSS 15%

Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in ProZilla 1.3.6-r2 and earlier a…

No fix yet
Fix from $1,950 2005-01-10