Vulnerability index

Browse CVEs

65 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2007-3289EPSS 12% PHP remote file inclusion vulnerability in spaw/spaw_control.class.php in the WiwiMod 0.4 module for XOOPS allows remote attackers to execute arbitra… Wiwimod Module No fix yet Fix from $1,9502007-06-20 HIGH 7.5 CVE-2007-3236EPSS 77% PHP remote file inclusion vulnerability in footer.php in the Horoscope 1.0 module for XOOPS allows remote attackers to execute arbitrary PHP code via… Horoscope Module No fix yet Fix from $1,9502007-06-15 MEDIUM 6.8 CVE-2007-3237EPSS 68% PHP remote file inclusion vulnerability in admin/spaw/spaw_control.class.php in the TinyContent 1.5 module for XOOPS allows remote attackers to execu… Tinycontent Module No fix yet Fix from $1,6002007-06-15 HIGH 7.5 CVE-2007-3222EPSS 7% PHP remote file inclusion vulnerability in modify.php in the XFsection 1.07 module for XOOPS allows remote attackers to execute arbitrary PHP code vi… Xfsection Module No fix yet Fix from $1,9502007-06-14 MEDIUM 6.8 CVE-2007-3220EPSS 63% PHP remote file inclusion vulnerability in admin/editor2/spaw_control.class.php in the Cjay Content 3 module for XOOPS allows remote attackers to exe… Cjay Content Module No fix yet Fix from $1,6002007-06-14 MEDIUM 6.8 CVE-2007-3221EPSS 68% PHP remote file inclusion vulnerability in admin/spaw/spaw_control.class.php in the XT-Conteudo module for XOOPS allows remote attackers to execute a… Xt Conteudo Module No fix yet Fix from $1,6002007-06-14 MEDIUM 6.8 CVE-2007-3057EPSS 69% PHP remote file inclusion vulnerability in include/wysiwyg/spaw_control.class.php in the icontent 4.5 module for XOOPS allows remote attackers to exe… Icontent Module No fix yet Fix from $1,6002007-06-06 HIGH 7.5 CVE-2007-2737 SQL injection vulnerability in index.php in the MyConference 1.0 module for Xoops allows remote attackers to execute arbitrary SQL commands via the c… Myconference Module Mitigation only Fix from $1,9502007-05-17 HIGH 7.5 CVE-2007-2738 SQL injection vulnerability in glossaire-p-f.php in the Glossaire 1.7 and earlier module for Xoops allows remote attackers to execute arbitrary SQL c… Xoops Glossaire Module after 1.7 Fix from $1,9502007-05-17 HIGH 7.5 CVE-2007-2571 SQL injection vulnerability in index.php in the wfquotes 1.0 0 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the c p… Wfquotes Module after 1.0.0 Fix from $1,9502007-05-09 HIGH 7.5 CVE-2007-2543 SQL injection vulnerability in game.php in the Flashgames 1.0.1 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the li… Flashgames Module No fix yet Fix from $1,9502007-05-09 HIGH 7.5 CVE-2007-2370 SQL injection vulnerability in index.php in the John Mordo Jobs 2.4 and earlier module for XOOPS allows remote attackers to execute arbitrary SQL com… John Mordo Jobs Module after 2.4 Fix from $1,9502007-04-30 HIGH 7.5 CVE-2007-1979 SQL injection vulnerability in index.php in the PopnupBlog 2.52 and earlier module for Xoops allows remote attackers to execute arbitrary SQL command… Xoops Popnupblog after 2.52 Fix from $1,9502007-04-12 HIGH 7.5 CVE-2007-1976 PHP remote file inclusion vulnerability in index.php in the Virii Info 1.10 and earlier module for Xoops allows remote attackers to execute arbitrary… Xoops Virii Info Module after 1.10 Fix from $1,9502007-04-12 HIGH 7.5 CVE-2007-1960 SQL injection vulnerability in visit.php in the Rha7 Downloads (rha7downloads) 1.0 module for XOOPS, and possibly other versions up to 1.10, allows r… Rha7 Downloads Module No fix yet Fix from $1,9502007-04-11 HIGH 7.5 CVE-2007-1962 SQL injection vulnerability in index.php in the WF-Snippets 1.02 and earlier module for XOOPS allows remote attackers to execute arbitrary SQL comman… Wf Snippets after 1.02 Fix from $1,9502007-04-11 HIGH 7.5 CVE-2007-1846 SQL injection vulnerability in index.php in the MyAds 2.04jp and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands v… Malaika System Myads Module after 2.04 Fix from $1,9502007-04-03 HIGH 7.5 CVE-2007-1847 SQL injection vulnerability in viewcat.php in the Repository module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid p… Repository Module No fix yet Fix from $1,9502007-04-03 HIGH 7.5 CVE-2007-1838 SQL injection vulnerability in view.php in the Friendfinder 3.3 and earlier module for Xoops allows remote attackers to execute arbitrary SQL command… Friendfinder Module after 3.3 Fix from $1,9502007-04-03 HIGH 7.5 CVE-2007-1814 SQL injection vulnerability in viewcat.php in the Core module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid paramet… Core Module No fix yet Fix from $1,9502007-04-02 HIGH 7.5 CVE-2007-1815 SQL injection vulnerability in viewcat.php in the Library module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid para… Library Module No fix yet Fix from $1,9502007-04-02 HIGH 7.5 CVE-2007-1816 SQL injection vulnerability in viewcat.php in the Tutoriais module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid pa… Tutoriais Module No fix yet Fix from $1,9502007-04-02 HIGH 7.5 CVE-2007-0377 Multiple SQL injection vulnerabilities in Xoops 2.0.16 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in kernel/gr… Xoops No fix yet Fix from $1,9502007-01-19 MEDIUM 6.8 CVE-2006-5810 Cross-site scripting (XSS) vulnerability in modules/wfdownloads/newlist.php in XOOPS 1.0 allows remote attackers to inject arbitrary web script or HT… Xoops No fix yet Fix from $1,6002006-11-08 MEDIUM 6.8 CVE-2006-5532 Cross-site scripting (XSS) vulnerability in rmgs/images.php in RMSOFT Gallery System 2.0 allows remote attackers to inject arbitrary web script or HT… Xoops Rmsoft Gallery System No fix yet Fix from $1,6002006-10-26 HIGH 7.5 CVE-2006-4417 SQL injection vulnerability in edituser.php in Xoops before 2.0.15 allows remote attackers to execute arbitrary SQL commands via the user_avatar para… Xoops after 2.0.14 Fix from $1,9502006-08-28 MEDIUM 5.1 CVE-2006-3363 PHP remote file inclusion vulnerability in index.php in the Glossaire module 1.7 for Xoops allows remote attackers to execute arbitrary PHP code via … Xoops Glossaire Module No fix yet Fix from $1,6002006-07-06 MEDIUM 5.1 CVE-2006-2516EPSS 6% mainfile.php in XOOPS 2.0.13.2 and earlier, when register_globals is enabled, allows remote attackers to overwrite variables such as $xoopsOption['no… Xoops after 2.0.13.2 Fix from $1,6002006-05-22 HIGH 7.5 CVE-2005-3681 SQL injection vulnerability in viewcat.php in XOOPS WF-Downloads module 2.05 allows remote attackers to execute arbitrary SQL commands via the list p… Wf Downloads No fix yet Fix from $1,9502005-11-18 MEDIUM 6.4 CVE-2005-3680 Directory traversal vulnerability in editor_registry.php in XOOPS 2.2.3 allows remote attackers to read or include arbitrary local files via a .. (do… Xoops No fix yet Fix from $1,6002005-11-18