Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Mkportal HIGH 7.5
CVE-2007-6467

SQL injection vulnerability in index.php in MKPortal 1.1 RC1 allows remote attackers to execute arbitrary SQL commands via the ida parameter in a gal…

No fix yet
Fix from $1,950 2007-12-20
Mkportal HIGH 7.5
CVE-2007-3814

Multiple SQL injection vulnerabilities in MKPortal 1.1.1 allow remote attackers to execute arbitrary SQL commands via (1) the idurlo field in the del…

No fix yet
Fix from $1,950 2007-07-17
Mkportal HIGH 7.5
CVE-2007-3637

SQL injection vulnerability in MKPortal 1.1.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, aka ZD-00000008. th…

Mitigation only
Fix from $1,950 2007-07-10
Mkportal HIGH 7.8
CVE-2007-0194

admin.php in MKPortal M1.1 RC1 allows remote attackers to obtain sensitive information via a direct request with an MK_PATH=1 query string, which rev…

Mitigation only
Fix from $1,950 2007-01-12
Mkportal HIGH 7.5
CVE-2007-0192

Cross-site request forgery (CSRF) vulnerability in the save_main operation in the ad_perms section in admin.php in MKPortal allows remote attackers t…

Mitigation only
Fix from $1,950 2007-01-12
Mkportal MEDIUM 6.8
CVE-2007-0191

Cross-site scripting (XSS) vulnerability in admin.php in MKPortal allows remote attackers to inject arbitrary web script or HTML via two certain fiel…

Mitigation only
Fix from $1,600 2007-01-12
Mkportal MEDIUM 5.8
CVE-2006-6741

Cross-site request forgery (CSRF) vulnerability in urlobox in MKPortal allows remote attackers to delete arbitrary messages as an administrator via a…

Mitigation only
Fix from $1,600 2006-12-26
Mkportal MEDIUM 5.0
CVE-2006-5139

Unspecified vulnerability in MkPortal allows remote attackers to corrupt web site content, and possibly have other impact, via a certain long Message…

No fix yet
Fix from $1,600 2006-10-03
Mkportal HIGH 7.5
CVE-2006-3554

Directory traversal vulnerability in index.php in MKPortal 1.0.1 Final allows remote attackers to include and execute arbitrary local files via direc…

Patch available
Fix from $1,950 2006-07-13
Mkportal HIGH 7.5
CVE-2006-2067

SQL injection vulnerability in vb_board_functions.php in MKPortal 1.1, as used with vBulletin 3.5.4 and earlier, allows remote attackers to execute a…

No fix yet
Fix from $1,950 2006-04-27