Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2010-4861 SQL injection vulnerability in asearch.php in webSPELL 4.2.1 allows remote attackers to execute arbitrary SQL commands via the search parameter. Webspell Patch available Fix from $1,9502011-10-05 MEDIUM 6.8 CVE-2009-1912 Directory traversal vulnerability in src/func/language.php in webSPELL 4.2.0e and earlier allows remote attackers to include and execute arbitrary lo… Webspell after 4.2.0e Fix from $1,6002009-06-04 HIGH 7.5 CVE-2007-4028 Absolute path traversal vulnerability in index.php in Webspell 4.01.02 allows remote attackers to include and execute arbitrary local files via a ful… Webspell No fix yet Fix from $1,9502007-07-26 MEDIUM 5.0 CVE-2007-2368 picture.php in WebSPELL 4.01.02 and earlier allows remote attackers to read arbitrary files via the file parameter. Webspell after 4.01.02 Fix from $1,6002007-04-30 HIGH 10.0 CVE-2007-1160 webSPELL 4.0, and possibly later versions, allows remote attackers to bypass authentication via a ws_auth cookie, a different vulnerability than CVE-… Webspell Mitigation only Fix from $1,9502007-03-02 HIGH 7.5 CVE-2007-1163 SQL injection vulnerability in printview.php in webSPELL 4.01.02 and earlier allows remote attackers to execute arbitrary SQL commands via the topic … Webspell after 4.01.02 Fix from $1,9502007-03-02 MEDIUM 6.8 CVE-2007-1154 SQL injection vulnerability in webSPELL allows remote attackers to execute arbitrary SQL commands via a ws_auth cookie, a different vulnerability tha… Webspell Mitigation only Fix from $1,6002007-03-02 MEDIUM 6.8 CVE-2007-1019 SQL injection vulnerability in news.php in webSPELL 4.01.02, when register_globals is enabled, allows remote attackers to execute arbitrary SQL comma… Webspell No fix yet Fix from $1,6002007-02-21 HIGH 7.5 CVE-2007-0502 SQL injection vulnerability in gallery.php in webSPELL 4.01.02 allows remote attackers to execute arbitrary SQL commands via the picID parameter, a d… Webspell No fix yet Fix from $1,9502007-01-25 HIGH 7.5 CVE-2007-0492 Multiple SQL injection vulnerabilities in gallery.php in webSPELL 4.01.02 and earlier allow remote attackers to execute arbitrary SQL commands via th… Webspell after 4.01.02 Fix from $1,9502007-01-25 HIGH 7.5 CVE-2006-5388 SQL injection vulnerability in index.php in WebSPELL 4.01.01 and earlier allows remote attackers to execute arbitrary SQL commands via the getsquad p… Webspell No fix yet Fix from $1,9502006-10-18 MEDIUM 5.4 CVE-2006-4782 src/index.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication and gain sensitive … Webspell after 4.01.01 Fix from $1,6002006-09-14 MEDIUM 5.1 CVE-2006-4783 SQL injection vulnerability in squads.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to execute arbit… Webspell after 4.01.01 Fix from $1,6002006-09-14 HIGH 7.5 CVE-2006-0728 SQL injection vulnerability in search.php in webSPELL 4.01.00 and earlier allows remote attackers to inject arbitrary SQL commands via the title_op p… Webspell after 4.01.00 Fix from $1,9502006-02-16