Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Phpadsnew HIGH 7.5
CVE-2007-0486

Multiple PHP remote file inclusion vulnerabilities in Openads (aka phpAdsNew) 2.0.7 allow remote attackers to execute arbitrary PHP code via a URL in…

Mitigation only
Fix from $1,950 2007-01-25
Phpadsnew HIGH 7.5
CVE-2006-6415

PHP remote file inclusion vulnerability in admin/lib-maintenance.inc.php in phpAdsNew 2.0.4-pr2 allows remote attackers to execute arbitrary PHP code…

Mitigation only
Fix from $1,950 2006-12-10
Phpadsnew MEDIUM 5.0
CVE-2006-5437

Directory traversal vulnerability in upgrade.php in phpAdsNew 2.0.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the phpAds_…

Mitigation only
Fix from $1,600 2006-10-20
Phpadsnew MEDIUM 5.0
CVE-2005-3791

HTTP response splitting vulnerability in phpAdsNew and phpPgAds 2.0.6 and earlier allows remote attackers to inject arbitrary HTML headers via adclic…

Fix: after 2.0.6
Fix from $1,600 2005-11-24
Phpadsnew HIGH 7.5
CVE-2005-3646

Multiple SQL injection vulnerabilities in lib-sessions.inc.php in phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allow remote attackers t…

Patch available
Fix from $1,950 2005-11-17
Phpadsnew MEDIUM 5.0
CVE-2005-3645

phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allows remote attackers to obtain the application installation path and other sensitive in…

Patch available
Fix from $1,600 2005-11-17
Phpadsnew HIGH 7.5
CVE-2005-2636

SQL injection vulnerability in lib-view-direct.inc.php in phpAdsNew and phpPgAds before 2.0.6 allows remote attackers to execute arbitrary SQL comman…

Fix: after 2.0.5
Fix from $1,950 2005-08-23
Phpadsnew MEDIUM 5.0
CVE-2005-2635

Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot d…

Fix: after 2.0.5
Fix from $1,600 2005-08-23
Phpadsnew MEDIUM 5.0
CVE-2005-0790

phpAdsNew 2.0.4 allows remote attackers to obtain sensitive information via a direct request to (1) lib-xmlrpcs.inc.php, (2) maintenance-activation.p…

Mitigation only
Fix from $1,600 2005-03-14
Phpadsnew HIGH 7.5
CVE-2001-1054

PHPAdsNew PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

Patch available
Fix from $1,950 2001-10-02