Skip to main content

Vendor/product archive

memht / memht_portal CVEs

Beta · best-effort

5 CVEs tagged to memht / memht_portal0 Critical, 1 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2010-5320

Published Jan 3, 2015

Multiple cross-site request forgery (CSRF) vulnerabilities in MemHT Portal 4.0.1 allow remote attackers to hijack the authentication of administrators for requests that (1) modify…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0372

Published Jan 30, 2009

Unrestricted file upload vulnerability in index.php in Miltenovik Manojlo MemHT Portal 4.0.1 and earlier allows remote authenticated users to execute arbitrary code by uploading a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5132

Published Nov 18, 2008

SQL injection vulnerability in inc/ajax/ajax_rating.php in MemHT Portal 4.0.1 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-4457

Published Oct 7, 2008

SQL injection vulnerability in inc/inc_statistics.php in MemHT Portal 3.9.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL comman…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4164

Published Sep 22, 2008

cron.php in MemHT Portal 3.9.0 and earlier allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1