Lucene search

K

Databay Security Vulnerabilities

cve
cve

CVE-2009-3425

Directory traversal vulnerability in includes/inc.thcms_admin_dirtree.php in MaxCMS 3.11.20b allows remote attackers to read arbitrary files via directory traversal sequences in the thCMS_root...

6.7AI Score

0.003EPSS

2009-09-25 10:30 PM
20
cve
cve

CVE-2009-3426

PHP remote file inclusion vulnerability in includes/file_manager/special.php in MaxCMS 3.11.20b allows remote attackers to execute arbitrary PHP code via a URL in the fm_includes_special...

7.5AI Score

0.007EPSS

2009-09-25 10:30 PM
21
cve
cve

CVE-2009-3424

Multiple PHP remote file inclusion vulnerabilities in MaxCMS 3.11.20b, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) is_projectPath parameter to includes/InstantSite/inc.is_root.php; GLOBALS[thCMS_root] parameter to (2)...

7.7AI Score

0.04EPSS

2009-09-25 10:30 PM
22