Vulnerability index

Browse CVEs

12 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2010-5063 SQL injection vulnerability in article.php in Virtual War (aka VWar) 1.6.1 R2 allows remote attackers to execute arbitrary SQL commands via the ratea… Virtual War No fix yet Fix from $1,9502012-10-08 MEDIUM 6.8 CVE-2010-5067 Virtual War (aka VWar) 1.6.1 R2 uses static session cookies that depend only on a user's password, which makes it easier for remote attackers to bypa… Virtual War No fix yet Fix from $1,6002012-10-08 MEDIUM 5.0 CVE-2010-5065 popup.php in Virtual War (aka VWar) 1.6.1 R2 allows remote attackers to bypass intended member restrictions and read news posts via a modified newsid… Virtual War No fix yet Fix from $1,6002012-10-08 MEDIUM 5.0 CVE-2010-5279 article.php in Virtual War (aka VWar) 1.6.1 R2 allows remote attackers to cause a denial of service (memory consumption) via a large integer in the r… Virtual War No fix yet Fix from $1,6002012-10-08 MEDIUM 5.0 CVE-2011-3813 Virtual War (aka VWar) 1.5.0r15 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the instal… Virtual War Mitigation only Fix from $1,6002011-09-24 HIGH 7.5 CVE-2008-0753 SQL injection vulnerability in calendar.php in Virtual War (VWar) 1.5 allows remote attackers to execute arbitrary SQL commands via the month paramet… Virtual War No fix yet Fix from $1,9502008-02-13 HIGH 7.5 CVE-2007-2312 Multiple SQL injection vulnerabilities in the Virtual War (VWar) 1.5.0 R15 module for PHP-Nuke allow remote attackers to execute arbitrary SQL comman… Virtual War No fix yet Fix from $1,9502007-04-26 HIGH 7.5 CVE-2006-4142 SQL injection vulnerability in extra/online.php in Virtual War (VWar) 1.5.0 R14 and earlier allows remote attackers to execute arbitrary SQL commands… Virtual War No fix yet Fix from $1,9502006-08-14 HIGH 7.5 CVE-2006-4010 SQL injection vulnerability in war.php in Virtual War (Vwar) 1.5.0 and earlier allows remote attackers to execute arbitrary SQL commands via the page… Virtual War No fix yet Fix from $1,9502006-08-07 MEDIUM 5.0 CVE-2006-2091 admin.php in Virtual War (VWar) 1.5 and versions before 1.2 allows remote attackers to obtain sensitive information via an invalid vwar_root paramete… Virtual War Mitigation only Fix from $1,6002006-04-29 HIGH 7.5 CVE-2006-1747 PHP remote file inclusion vulnerability in Virtual War (VWar) 1.5.0 allows remote attackers to execute arbitrary PHP code via a URL in the vwar_root … Virtual War No fix yet Fix from $1,9502006-04-12 MEDIUM 5.1 CVE-2006-1503 PHP remote file inclusion vulnerability in includes/functions_install.php in Virtual War (VWar) 1.5.0 R11 and earlier allows remote attackers to incl… Virtual War No fix yet Fix from $1,6002006-03-30