Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
forum vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-2946
Dmx Forum 2.1a stores _includes/bd.inc under the web root with insufficient access control, which allows remote malicious users to obtain database username and password information.
Dmx Forum Dmx Forum
1 EDB exploit
NA
CVE-2007-3213
Multiple cross-site scripting (XSS) vulnerabilities in comments.cgi in Sporum Forum 3.0.9 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) view and (2) mode parameters.
Sporum Forum Sporum Forum
NA
CVE-2006-5421
WSN Forum 1.3.4 and previous versions allows remote malicious users to execute arbitrary PHP code via a modified pathname in the pathtoconfig parameter that points to an avatar image that contains PHP code, which is then accessed from prestart.php. NOTE: this issue has been label...
Wsn Forum Wsn Forum
1 EDB exploit
NA
CVE-2006-6448
Multiple SQL injection vulnerabilities in Vt-Forum Lite 1.3 and previous versions allow remote malicious users to execute arbitrary SQL commands via the user parameter to vf_memberdetail.asp, and other unspecified vectors. NOTE: The provenance of this information is unknown; the ...
Vt-forum Vt-forum
NA
CVE-2007-3267
Cross-site scripting (XSS) vulnerability in low.php in Fuzzylime Forum 1.01b and previous versions allows remote malicious users to inject arbitrary web script or HTML via the fromaction parameter in a log action, a different vector than CVE-2007-3235.
Fuzzylime Forum Fuzzylime Forum
1 EDB exploit
NA
CVE-2006-2674
Multiple SQL injection vulnerabilities in Tamber Forum 1.9.13 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) frm_id parameter to (a) show_forum.asp, (2) a search field to (b) forum_search.asp, (3) Email address or (4) Password to ...
Tamber Forum Tamber Forum
NA
CVE-2007-6241
Multiple unspecified vulnerabilities in Beehive Forum 0.7.1 have unknown "critical" impact and attack vectors, different issues than CVE-2007-6014.
Beehive Forum Beehive Forum
NA
CVE-2007-6014
SQL injection vulnerability in post.php in Beehive Forum 0.7.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the t_dedupe parameter.
Beehive Forum Beehive Forum
NA
CVE-2006-5054
SQL injection vulnerability in uye/uye_ayrinti.asp in iyzi Forum 1 Beta 2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the uye_nu parameter.
Iyzi Forum Iyzi Forum
1 EDB exploit
NA
CVE-2007-6667
SQL injection vulnerability in faq.php in MyPHP Forum 3.0 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter. NOTE: the member.php vector is already covered by CVE-2005-0413.
Myphp Myphp Forum
Myphp Myphp Forum 2.0
Myphp Myphp Forum 1.0
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
firmware
CVE-2023-52866
CVE-2024-4367
CVE-2024-1721
CVE-2023-34992
XML injection
CVE-2023-52817
SQL
CVE-2023-52855
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »