Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
php-nuke vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-0906
SQL injection vulnerability in the Docum module in PHP-Nuke allows remote malicious users to execute arbitrary SQL commands via the artid parameter in a viewarticle operation.
Php-nuke Php-nuke Module Docum
1 EDB exploit
NA
CVE-2008-5039
Cross-site scripting (XSS) vulnerability in the League module for PHP-Nuke, possibly 2.4, allows remote malicious users to inject arbitrary web script or HTML via the tid parameter in a team action to modules.php.
Php-nuke League Module 2.4
Php-nuke League Module
1 EDB exploit
NA
CVE-2008-7226
SQL injection vulnerability in index.php in the Recipes module 1.3, 1.4, and possibly other versions for PHP-Nuke allows remote malicious users to execute arbitrary SQL commands via the recipeid parameter.
Php-nuke Recipe Module 1.3
Php-nuke Recipe Module 1.4
1 EDB exploit
NA
CVE-2008-3573
The CAPTCHA implementation in (1) Pligg 9.9.5 and possibly (2) Francisco Burzi PHP-Nuke 8.1 provides a critical random number (the ts_random value) within the URL in the SRC attribute of an IMG element, which allows remote malicious users to pass the CAPTCHA test via a calculatio...
Pligg Pligg 9.9.5
Php-nuke Php-nuke 8.1
1 EDB exploit
NA
CVE-2006-0185
Multiple cross-site scripting vulnerabilities in the (1) Pool or (2) News Modules in Php-Nuke allow remote malicious users to inject arbitrary web script or HTML via javascript in the SRC attribute of an IMG tag.
Php-nuke News Module
Php-nuke Pool Module
1 EDB exploit
NA
CVE-2003-1340
Multiple SQL injection vulnerabilities in Francisco Burzi PHP-Nuke 5.6 and 6.5 allow remote authenticated users to execute arbitrary SQL commands via (1) a uid (user) cookie to modules.php; and allow remote malicious users to execute arbitrary SQL commands via an aid (admin) cook...