Lucene search

K

Clientexec Security Vulnerabilities

cve
cve

CVE-2004-1590

Clientexec allows remote attackers to gain sensitive information via an HTTP request to phpinfo.php, which calls the phpinfo function.

6.9AI Score

0.006EPSS

2005-02-20 05:00 AM
23
cve
cve

CVE-2005-4630

SQL injection vulnerability in index.php in ClientExec 2.3 allows remote attackers to execute arbitrary SQL commands via the (1) billshowid, (2) billdetailid, (3) fuse, and (4) frmClientID parameters.

8.8AI Score

0.011EPSS

2006-01-07 01:00 AM
17
cve
cve

CVE-2007-2805

Multiple cross-site scripting (XSS) vulnerabilities in index.php in ClientExec (CE) 3.0 beta2, and possibly other versions, allow remote attackers to inject arbitrary web script or HTML via the (1) ticketID, (2) view, and (3) fuse parameters.

5.9AI Score

0.002EPSS

2007-05-22 07:30 PM
25