Skip to main content

Vendor archive

hotscripts CVEs

Beta · best-effort

8 CVEs tagged to vendor hotscripts0 Critical, 4 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2008-3707

Published Aug 19, 2008

Multiple PHP remote file inclusion vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to execute arbitrary PHP code via a URL in the script_path parameter to (1) fla…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3709

Published Aug 19, 2008

Multiple cross-site scripting (XSS) vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to inject arbitrary web script or HTML via the (1) lOptionsOptions, (2) lNavAd…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3710

Published Aug 19, 2008

Multiple directory traversal vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2491

Published May 28, 2008

SQL injection vulnerability in adv_cat.php in AbleSpace 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1565

Published Mar 31, 2008

Directory traversal vulnerability in forum/irc/irc.php in the PJIRC 0.5 module for phpBB allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-6603

Published Dec 31, 2007

Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attackers to obtain the administrator username and password via a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6084

Published Nov 22, 2007

SQL injection vulnerability in software-description.php in HotScripts Clone Script allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-4371

Published Aug 15, 2007

Unrestricted file upload vulnerability in admin/pages/blog-add.php in Neuron Blog 1.1 allows remote attackers to upload and execute arbitrary PHP files in uploads/.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1