CVE-2007-3939
- EPSS 0.84%
- Veröffentlicht 21.07.2007 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in index.php in SpoonLabs Vivvo Article Management CMS (aka phpWordPress) CMS 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter.
CVE-2007-1031
- EPSS 4.7%
- Veröffentlicht 21.02.2007 11:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote attackers to include and execute arbitrary local files via the root parameter.
CVE-2007-0574
- EPSS 0.82%
- Veröffentlicht 30.01.2007 17:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in rss/show_webfeed.php in SpoonLabs Vivvo Article Management CMS (aka phpWordPress) 3.40 allows remote attackers to execute arbitrary SQL commands via the wcHeadlines parameter, a different vector than CVE-2006-4715. NOT...
CVE-2006-4714
- EPSS 12.25%
- Veröffentlicht 12.09.2006 16:07:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
PHP remote file inclusion vulnerability in index.php in SpoonLabs Vivvo Article Management CMS (aka phpWordPress) 3.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the classified_pat...
CVE-2006-4715
- EPSS 1.81%
- Veröffentlicht 12.09.2006 16:07:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
SQL injection vulnerability in pdf_version.php in SpoonLabs Vivvo Article Management CMS (aka phpWordPress) 3.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.