Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
forum vulnerabilities and exploits
(subscribe to this query)
668
VMScore
CVE-2007-6241
Multiple unspecified vulnerabilities in Beehive Forum 0.7.1 have unknown "critical" impact and attack vectors, different issues than CVE-2007-6014.
Beehive Forum Beehive Forum
755
VMScore
CVE-2006-5054
SQL injection vulnerability in uye/uye_ayrinti.asp in iyzi Forum 1 Beta 2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the uye_nu parameter.
Iyzi Forum Iyzi Forum
1 EDB exploit
694
VMScore
CVE-2006-6829
Efkan Forum 1.0 and previous versions store sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for forum.mdb. NOTE: The provenance of this information is unknown; the details a...
Efkan Forum Efkan Forum
668
VMScore
CVE-2006-6448
Multiple SQL injection vulnerabilities in Vt-Forum Lite 1.3 and previous versions allow remote malicious users to execute arbitrary SQL commands via the user parameter to vf_memberdetail.asp, and other unspecified vectors. NOTE: The provenance of this information is unknown; the ...
Vt-forum Vt-forum
435
VMScore
CVE-2007-3267
Cross-site scripting (XSS) vulnerability in low.php in Fuzzylime Forum 1.01b and previous versions allows remote malicious users to inject arbitrary web script or HTML via the fromaction parameter in a log action, a different vector than CVE-2007-3235.
Fuzzylime Forum Fuzzylime Forum
1 EDB exploit
383
VMScore
CVE-2007-3213
Multiple cross-site scripting (XSS) vulnerabilities in comments.cgi in Sporum Forum 3.0.9 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) view and (2) mode parameters.
Sporum Forum Sporum Forum
505
VMScore
CVE-2006-2946
Dmx Forum 2.1a stores _includes/bd.inc under the web root with insufficient access control, which allows remote malicious users to obtain database username and password information.
Dmx Forum Dmx Forum
1 EDB exploit
685
VMScore
CVE-2008-0099
Multiple SQL injection vulnerabilities in MyPHP Forum 3.0 and previous versions allow remote malicious users to execute arbitrary SQL commands via the searchtext parameter to search.php, and unspecified other vectors.
Myphp Forum Myphp Forum
1 EDB exploit
383
VMScore
CVE-2004-2122
Cross-site scripting (XSS) vulnerability in intraforum_db.cgi in Intra Forum allows remote malicious users to inject arbitrary web script or HTML via the (1) use_last_read or (2) forum parameters.
Intra Forum Intra Forum
685
VMScore
CVE-2007-6667
SQL injection vulnerability in faq.php in MyPHP Forum 3.0 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter. NOTE: the member.php vector is already covered by CVE-2005-0413.
Myphp Myphp Forum
Myphp Myphp Forum 2.0
Myphp Myphp Forum 1.0
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49333
CVE-2024-33901
CVE-2024-36001
CVE-2024-2835
firewall
XPath injection
authentication bypass
CVE-2024-22120
CVE-2024-32002
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »