Skip to main content

Vendor/product archive

zoneo-soft / freeforum CVEs

Beta · best-effort

5 CVEs tagged to zoneo-soft / freeforum0 Critical, 3 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2008-3566

Published Aug 10, 2008

Cross-site scripting (XSS) vulnerability in ZoneO-soft freeForum 1.7 allows remote attackers to inject arbitrary web script or HTML via the acuparam parameter to (1) the default U…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0487

Published Jan 25, 2007

PHP remote file inclusion vulnerability in index.php in FreeForum 0.9.0 allows remote attackers to execute arbitrary PHP code via a URL in the fpath parameter. NOTE: this issue ha…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-0957

Published Mar 2, 2006

Direct static code injection vulnerability in func.inc.php in ZoneO-Soft freeForum before 1.2.1 allows remote attackers to execute arbitrary PHP code via the (1) X-Forwarded-For a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-0958

Published Mar 2, 2006

Cross-site scripting (XSS) vulnerability in func.inc.php in ZoneO-Soft freeForum before 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the (1) name and (…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-3816

Published Nov 26, 2005

Multiple SQL injection vulnerabilities in forum.php in freeForum 1.1 and earlier and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter or…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1