CVE-2012-6039
- EPSS 0.42%
- Veröffentlicht 26.11.2012 22:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
SQL injection vulnerability in view_comments.php in YABSoft Advanced Image Hosting (AIH) Script, possibly 2.3, allows remote attackers to execute arbitrary SQL commands via the gal parameter.
CVE-2009-4266
- EPSS 0.72%
- Veröffentlicht 10.12.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in search.php in YABSoft Advanced Image Hosting (AIH) Script 2.2, and possibly 2.3, allows remote attackers to inject arbitrary web script or HTML via the text parameter.
CVE-2009-1032
- EPSS 0.2%
- Veröffentlicht 20.03.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in gallery_list.php in YABSoft Advanced Image Hosting (AIH) Script 2.3 allows remote attackers to execute arbitrary SQL commands via the gal parameter.
CVE-2008-2536
- EPSS 0.41%
- Veröffentlicht 03.06.2008 15:32:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in out.php in YABSoft Advanced Image Hosting (AIH) Script 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the t parameter.