Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
phpshe vulnerabilities and exploits
(subscribe to this query)
6.4
CVSSv2
CVE-2018-18485
An issue exists in PHPSHE 1.7. admin.php?mod=db&act=del allows remote malicious users to delete arbitrary files via directory traversal sequences in the dbname parameter. This can be leveraged to reload the product by deleting install.lock.
Phpshe Phpshe 1.7
7.5
CVSSv2
CVE-2020-18020
SQL Injection in PHPSHE Mall System v1.7 allows remote malicious users to execute arbitrary code by injecting SQL commands into the "user_phone" parameter of a crafted HTTP request to the "admin.php" component.
Phpshe Mall System 1.7
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2