Skip to main content

Vendor archive

speedtech CVEs

Beta · best-effort

5 CVEs tagged to vendor speedtech0 Critical, 2 High, 1 Medium, 2 Low, 0 Unrated.

CVE-2010-2158

Published Jun 7, 2010

Multiple cross-site scripting (XSS) vulnerabilities in the Storm module 5.x and 6.x before 6.x-1.33 for Drupal allow remote authenticated users, with certain module privileges, to…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-2123

Published Jun 1, 2010

Multiple cross-site scripting (XSS) vulnerabilities in the Storm module 5.x and 6.x before 6.x-1.33 for Drupal allow remote authenticated users, with certain module privileges, to…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2009-4515

Published Dec 31, 2009

The Storm module 6.x before 6.x-1.25 for Drupal does not enforce privilege requirements for storminvoiceitem nodes, which allows remote attackers to read node titles via unspecifi…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4737

Published Sep 6, 2007

Multiple PHP remote file inclusion vulnerabilities in SpeedTech PHP Library (STPHPLibrary) 0.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the STPHPLIB_DIR…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-4738

Published Sep 6, 2007

Multiple PHP remote file inclusion vulnerabilities in SpeedTech PHP Library (STPHPLibrary) 0.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) db_conf…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1