CVE-2010-1113
- EPSS 1.02%
- Veröffentlicht 25.03.2010 17:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in the forum page in Web Server Creator - Web Portal 0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors to index.php.
CVE-2010-1114
- EPSS 1.02%
- Veröffentlicht 25.03.2010 17:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal 0.1 allow remote attackers to execute arbitrary PHP code via a URL in the (1) pg parameter to index.php and the (2) path parameter to news/form.php.
- EPSS 0.14%
- Veröffentlicht 25.03.2010 17:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Directory traversal vulnerability in news/include/customize.php in Web Server Creator - Web Portal 0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the l parameter.
CVE-2008-6545
- EPSS 0.56%
- Veröffentlicht 30.03.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
PHP remote file inclusion vulnerability in news/include/createdb.php in Web Server Creator Web Portal 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the langfile parameter. NOTE: the provenance of this information is unknown;...