Skip to main content

Vendor/product archive

dream4 / koobi_pro CVEs

Beta · best-effort

4 CVEs tagged to dream4 / koobi_pro0 Critical, 2 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2008-1122

Published Mar 3, 2008

SQL injection vulnerability in the downloads module in Koobi Pro 5.7 allows remote attackers to execute arbitrary SQL commands via the categ parameter to index.php. NOTE: it was…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3620

Published Jul 18, 2006

Cross-site scripting (XSS) vulnerability in the showtopic module in Koobi Pro CMS 5.6 allows remote attackers to inject arbitrary web script or HTML via the toid parameter.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-3621

Published Jul 18, 2006

SQL injection vulnerability in the showtopic module in Koobi Pro CMS 5.6 allows remote attackers to execute arbitrary SQL commands via the toid parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3622

Published Jul 18, 2006

The showtopic module in Koobi Pro CMS 5.6 allows remote attackers to obtain sensitive information via a ' (single quote) in the p parameter, which displays the path in an error me…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1