Lucene search

K

Php Labs Security Vulnerabilities

cve
cve

CVE-2005-1233

Cross-site scripting (XSS) vulnerability in index.php in PHP Labs proFile allows remote attackers to inject arbitrary web script or HTML via the (1) dir or (2) file parameters.

6AI Score

0.008EPSS

2005-04-24 04:00 AM
20
cve
cve

CVE-2005-3951

SQL injection vulnerability in survey.php in PHP Labs Survey Wizard allows remote attackers to execute arbitrary SQL commands via the sid parameter.

8.9AI Score

0.003EPSS

2005-12-01 11:00 AM
26
cve
cve

CVE-2005-3952

SQL injection vulnerability in PHP Labs Top Auction allows remote attackers to execute arbitrary SQL commands via the (1) category and (2) type parameters to viewcat.php, or (3) certain search parameters. NOTE: later a disclosure reported the affected version as 1.0.

8.8AI Score

0.015EPSS

2005-12-01 11:00 AM
35
cve
cve

CVE-2007-1428

SQL injection vulnerability in search.php in PHP Labs JobSitePro 1.0 allows remote attackers to execute arbitrary SQL commands via the salary parameter.

8.4AI Score

0.111EPSS

2007-03-13 01:19 AM
37