Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Papoo HIGH 8.8
CVE-2021-29054

Certain Papoo products are affected by: Cross Site Request Forgery (CSRF) in the admin interface. This affects Papoo CMS Light through 21.02 and Papo…

Fix: after 21.02
Fix from $1,950 2021-04-13
Papoo MEDIUM 5.1
CVE-2009-0735

Directory traversal vulnerability in lib/classes/message_class.php in Papoo CMS 3.6, when register_globals is enabled and magic_quotes_gpc is disable…

No fix yet
Fix from $1,600 2009-02-25
Papoo HIGH 7.5
CVE-2008-3724

SQL injection vulnerability in index.php in Papoo before 3.7.2 allows remote attackers to execute arbitrary SQL commands via the suchanzahl parameter.

Fix: after 3.7.1
Fix from $1,950 2008-08-20
Papoo MEDIUM 6.8
CVE-2007-3494

Papoo CMS 3.6, and possibly earlier, does not verify user privileges when accessing the backend administration plugins, which allows remote authentic…

Fix: after 3.6
Fix from $1,600 2007-06-29
Papoo HIGH 7.5
CVE-2007-3453

SQL injection vulnerability in Papoo 3.6, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the selmenuid parameter…

Fix: after 3.6
Fix from $1,950 2007-06-27
Papoo HIGH 7.5
CVE-2007-2320

SQL injection vulnerability in kontakt.php in Papoo 3.02 and earlier allows remote attackers to execute arbitrary SQL commands via the menuid paramet…

Fix: after 3.02
Fix from $1,950 2007-04-26
Papoo HIGH 7.5
CVE-2006-3572

SQL injection vulnerability in forumthread.php in Papoo 3 RC3 and earlier allows remote attackers to execute arbitrary SQL commands via the msgid par…

Fix: after 3.0.0_rc3
Fix from $1,950 2006-07-13
Papoo MEDIUM 6.4
CVE-2006-1766

Multiple SQL injection vulnerabilities in Papoo 2.1.5, and 3 beta1 and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) …

Fix: after 3_beta1
Fix from $1,600 2006-04-13
Papoo HIGH 7.5
CVE-2005-4478

Multiple SQL injection vulnerabilities in Papoo 2.1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) menuid paramet…

Fix: after 2.1.2
Fix from $1,950 2005-12-22