Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
octeth oempro 3.5.5.1 vulnerabilities and exploits
(subscribe to this query)
445
VMScore
CVE-2008-3057
Octeth Oempro 3.5.5.1, and possibly other versions prior to 4, does not set the secure flag for the PHPSESSID cookie in an https session, which makes it easier for remote malicious users to capture this cookie by intercepting its transmission within an http session.
Octeth Oempro 3.5.5.1
755
VMScore
CVE-2008-3058
Multiple SQL injection vulnerabilities in Octeth Oempro 3.5.5.1, and possibly other versions prior to 4, allow remote malicious users to execute arbitrary SQL commands via the FormValue_Email parameter (aka Email field) to index.php in (1) member/, (2) client/, or (3) admin/; or ...
Octeth Oempro 3.5.5.1
1 EDB exploit
356
VMScore
CVE-2008-3059
member/settings_account.php in Octeth Oempro 3.5.5.1, and possibly other versions prior to 4, uses cleartext to transmit a password entered in the FormValue_Password field, which makes it easier for remote malicious users to obtain sensitive information by sniffing the network, r...
Octeth Oempro 3.5.5.1
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started