Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
php php 3.0.1 vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2019-10015
baigoStudio baigoSSO v3.0.1 allows remote malicious users to execute arbitrary PHP code via the first form field of a configuration screen, because this code is written to the BG_SITE_NAME field in the opt_base.inc.php file.
Baigo Baigo Sso 3.0.1
7.5
CVSSv2
CVE-2006-1602
PHP remote file inclusion vulnerability in includes/functions_common.php in the VWar Account module (vWar_Account) in PHPNuke Clan 3.0.1 allows remote malicious users to include arbitrary files via a URL in the vwar_root2 parameter. NOTE: it is possible that this issue stems from...
Phpnuke-clan Phpnuke-clan 3.0.1
4.3
CVSSv2
CVE-2018-20639
PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 has HTML injection via the Search Bar.
Entrepreneur Job Portal Script Project Entrepreneur Job Portal Script 3.0.1
7.5
CVSSv2
CVE-2003-1131
PHP remote file inclusion vulnerability in index.php in KnowledgeBuilder, referred to as KnowledgeBase, allows remote malicious users to execute arbitrary PHP code by modifying the page parameter to reference a URL on a remote web server that contains the code.
Activecampaign Knowledgebuilder 2.0.1
Activecampaign Knowledgebuilder 2.1.4
Activecampaign Knowledgebuilder 2.1.0
Activecampaign Knowledgebuilder 3.0.1
1 EDB exploit
3.5
CVSSv2
CVE-2018-20640
PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 has stored Cross-Site Scripting (XSS) via the Full Name field.
Entrepreneur Job Portal Script Project Entrepreneur Job Portal Script 3.0.1
6.8
CVSSv2
CVE-2018-20641
PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 has Cross-Site Request Forgery (CSRF) via the Edit Profile feature.
Entrepreneur Job Portal Script Project Entrepreneur Job Portal Script 3.0.1
7.5
CVSSv2
CVE-2012-4343
Multiple unspecified vulnerabilities in Gallery 3 prior to 3.0.4 allow malicious users to execute arbitrary PHP code via unknown vectors.
Menalto Gallery 3.0.1
Menalto Gallery 3.0
Menalto Gallery
Menalto Gallery 3.0.2
4
CVSSv2
CVE-2018-20643
PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.
Entrepreneur Job Portal Script Project Entrepreneur Job Portal Script 3.0.1
4
CVSSv2
CVE-2018-20642
PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 allows remote malicious users to cause a denial of service (outage of profile editing) via crafted JavaScript code in the KeySkills field.
Entrepreneur Job Portal Script Project Entrepreneur Job Portal Script 3.0.1
5
CVSSv2
CVE-2005-0429
Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 up to and including 3.0.4, when showforumusers is enabled, allows remote malicious users to execute inject arbitrary PHP commands via the comma parameter.
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0
2 EDB exploits
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-6267
XML injection
CVE-2024-37673
CVE-2024-6266
CVE-2024-30078
arbitrary
CVE-2024-36886
CVE-2024-5346
template injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »