Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alstrasoft vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2007-2017
siteadmin/useredit.php in AlstraSoft Video Share Enterprise does not check authentication, which allows remote malicious users to obtain or modify user information via a direct request.
Alstrasoft Video Share Enterprise
7.5
CVSSv2
CVE-2006-2616
SQL injection vulnerability in the search script in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote malicious users to execute arbitrary SQL commands via the uri parameter.
Alstrasoft Webhost Directory 1.2
5
CVSSv2
CVE-2006-2617
(1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote malicious users to obtain the installation path via an invalid entry in the Username field on the login page, which causes the path to be displayed in an SQL error. NOTE: this issue migh...
Alstrasoft Webhost Directory 1.2
4.3
CVSSv2
CVE-2007-4077
Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft Video Share Enterprise allow remote malicious users to inject arbitrary web script or HTML via the (1) msg, (2) page, (3) viewkey, or (4) viewtype parameter to (a) view_video.php; the (5) next parameter to (b) sign...
Alstrasoft Video Share Enterprise
4.3
CVSSv2
CVE-2007-4082
Cross-site scripting (XSS) vulnerability in contact_author.php AlstraSoft Article Manager Pro allows remote malicious users to inject arbitrary web script or HTML via the userid parameter.
Alstrasoft Article Manager Pro
7.5
CVSSv2
CVE-2005-3062
PHP remote file inclusion vulnerability in index.php in AlstraSoft E-Friends 4.0 allows remote malicious users to execute arbitrary PHP code via the mode parameter.
Alstrasoft E-friends 4.0
4.3
CVSSv2
CVE-2006-2618
Cross-site scripting (XSS) vulnerability in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, might allow remote malicious users to inject arbitrary web script or HTML via the "write a review" box. NOTE: since user reviews do not require ad...
Alstrasoft Webhost Directory 1.2
7.5
CVSSv2
CVE-2008-3386
SQL injection vulnerability in album.php in AlstraSoft Video Share Enterprise 4.51 allows remote malicious users to execute arbitrary SQL commands via the UID parameter, a different vector than CVE-2007-4086.
Alstrasoft Video Share Enterprise 4.51
1 EDB exploit
7.5
CVSSv2
CVE-2005-3793
Multiple SQL injection vulnerabilities in AlstraSoft Affiliate Network Pro 7.2 allow remote malicious users to bypass authentication and execute arbitrary SQL commands via the (1) username or (2) password to admin/admin_validate_login, or the (3) login, (4) password, and (5) flag...
Alstrasoft Affiliate Network Pro 7.2
5
CVSSv2
CVE-2005-3794
AlstraSoft Affiliate Network Pro 7.2 allows remote malicious users to obtain sensitive information via a direct request to scripts such as (1) togateway.php and (2) other unspecified scripts.
Alstrasoft Affiliate Network Pro 7.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-52710
arbitrary
CVE-2024-5272
CVE-2024-2961
brute force
remote
CVE-2024-32944
CVE-2024-36241
CVE-2024-5274
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
NEXT »