Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
php php 5.4.1 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2013-4636
The mget function in libmagic/softmagic.c in the Fileinfo component in PHP 5.4.x prior to 5.4.16 allows remote malicious users to cause a denial of service (invalid pointer dereference and application crash) via an MP3 file that triggers incorrect MIME type detection during acces...
Php Php 5.4.12
Php Php 5.4.15
Php Php 5.4.14
Php Php 5.4.8
Php Php 5.4.9
Php Php 5.4.11
Php Php 5.4.10
Php Php 5.4.2
Php Php 5.4.5
Php Php 5.4.6
Php Php 5.4.13
Php Php 5.4.0
Php Php 5.4.3
Php Php 5.4.1
Php Php 5.4.7
Php Php 5.4.4
4.3
CVSSv2
CVE-2012-1912
Cross-site scripting (XSS) vulnerability in preferences.php in PHP Address Book 7.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the from parameter. NOTE: the index.php vector is already covered by CVE-2008-2566.
Chatelao Php Address Book 5.3
Chatelao Php Address Book
Chatelao Php Address Book 6.1.4
Chatelao Php Address Book 6.2.2
Chatelao Php Address Book 3.1
Chatelao Php Address Book 3.3.18
Chatelao Php Address Book 3.2.12
Chatelao Php Address Book 3.3.10
Chatelao Php Address Book 3.4.8
Chatelao Php Address Book 3.3.12
Chatelao Php Address Book 3.1.1
Chatelao Php Address Book 3.1.6
Chatelao Php Address Book 2.4
Chatelao Php Address Book 6.2.1
Chatelao Php Address Book 3.3.16
Chatelao Php Address Book 6.2.9
Chatelao Php Address Book 3.2
Chatelao Php Address Book 6.1
Chatelao Php Address Book 5.4.7
Chatelao Php Address Book 6.0
Chatelao Php Address Book 6.2.3
Chatelao Php Address Book 2.2
1 EDB exploit
4.3
CVSSv2
CVE-2012-2903
Multiple cross-site scripting (XSS) vulnerabilities in PHP Address Book 7.0 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) PATH_INFO to group.php, or the (2) target_language or (3) target_flag parameter to translate.php.
Chatelao Php Address Book 5.3
Chatelao Php Address Book 3.1
Chatelao Php Address Book 3.3.18
Chatelao Php Address Book 3.2.12
Chatelao Php Address Book 3.3.10
Chatelao Php Address Book 3.4.8
Chatelao Php Address Book 3.3.12
Chatelao Php Address Book 3.1.1
Chatelao Php Address Book 3.1.6
Chatelao Php Address Book 2.4
Chatelao Php Address Book 3.3.16
Chatelao Php Address Book 3.2
Chatelao Php Address Book 6.1
Chatelao Php Address Book 5.4.7
Chatelao Php Address Book 6.0
Chatelao Php Address Book 2.2
Chatelao Php Address Book 5.7
Chatelao Php Address Book 5.2
Chatelao Php Address Book 3.3.7
Chatelao Php Address Book 5.1
Chatelao Php Address Book 3.3.3
Chatelao Php Address Book 3.4.9
1 EDB exploit
2.6
CVSSv2
CVE-2012-3450
pdo_sql_parser.re in the PDO extension in PHP prior to 5.3.14 and 5.4.x prior to 5.4.4 does not properly determine the end of the query string during parsing of prepared statements, which allows remote malicious users to cause a denial of service (out-of-bounds read and applicati...
Php Php 5.3.10
Php Php 5.3.6
Php Php 5.3.9
Php Php 5.3.1
Php Php 5.3.8
Php Php
Php Php 5.4.2
Php Php 5.3.12
Php Php 5.3.0
Php Php 5.3.3
Php Php 5.3.7
Php Php 5.3.11
Php Php 5.4.0
Php Php 5.3.2
Php Php 5.4.3
Php Php 5.3.4
Php Php 5.4.1
Php Php 5.3.5
1 EDB exploit
NA
CVE-2024-2203
The The Plus Addons for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 5.4.1 via the Clients widget. This makes it possible for authenticated attackers, with contributor-level access and above, to include and execute arb...
NA
CVE-2024-2210
The The Plus Addons for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 5.4.1 via the Team Member Listing widget. This makes it possible for authenticated attackers, with contributor-level access and above, to include and...
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3080
log injection
CVE-2024-6041
CVE-2024-37661
XML external entity
CVE-2024-0845
privilege escalation
CVE-2023-37057
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3