Skip to main content

Vendor/product archive

gregory_kokanosky / phpmynewsletter CVEs

Beta · best-effort

4 CVEs tagged to gregory_kokanosky / phpmynewsletter2 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2008-1295

Published Mar 12, 2008

SQL injection vulnerability in archives.php in Gregory Kokanosky (aka Greg's Place) phpMyNewsletter 0.8 beta 5 and earlier allows remote attackers to execute arbitrary SQL command…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2371

Published Apr 30, 2007

admin/index.php in Gregory Kokanosky phpMyNewsletter 0.8 beta5 and earlier provides access to configuration modification before login, which allows remote attackers to cause a den…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-2372

Published Apr 30, 2007

admin/send_mod.php in Gregory Kokanosky phpMyNewsletter 0.8 beta5 and earlier prints a Location header but does not exit when administrative credentials are missing, which allows…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2002-1887

Published Dec 31, 2002

PHP remote file inclusion vulnerability in customize.php for phpMyNewsletter 0.6.10 allows remote attackers to execute arbitrary PHP code via the l parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1