CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2007-0486 HIGH

Multiple PHP remote file inclusion vulnerabilities in Openads (aka phpAdsNew) 2.0.7 allow remote attackers to execute arbitrary PHP code via a URL in the (1) p…

CVSS 7.5 EPSS 1.80% Jan 25, 2007
CVE-2006-6415 HIGH

PHP remote file inclusion vulnerability in admin/lib-maintenance.inc.php in phpAdsNew 2.0.4-pr2 allows remote attackers to execute arbitrary PHP code via a URL…

CVSS 7.5 EPSS 1.43% Dec 10, 2006
CVE-2006-5515 MEDIUM

Cross-site scripting (XSS) vulnerability in lib-history.inc.php in phpAdsNew and phpPgAds before 2.0.8-pr1 allows remote attackers to inject arbitrary web scri…

CVSS 4.3 EPSS 1.64% Oct 26, 2006
CVE-2006-5437 MEDIUM

Directory traversal vulnerability in upgrade.php in phpAdsNew 2.0.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the phpAds_config[lan…

CVSS 5.0 EPSS 1.66% Oct 20, 2006
CVE-2006-3984 HIGH

PHP remote file inclusion vulnerability in phpAdsNew/view.inc.php in Albasoftware Phpauction 2.1 and possibly later versions, with phpAdsNew 2.0.5, allows remo…

CVSS 7.5 EPSS 3.25% Aug 5, 2006
CVE-2006-1397 MEDIUM

Multiple cross-site scripting (XSS) vulnerabilities in (a) phpAdsNew and (b) phpPgAds before 2.0.8 allow remote attackers to inject arbitrary web script or HTM…

CVSS 4.3 EPSS 1.91% Mar 28, 2006
CVE-2005-3791 MEDIUM

HTTP response splitting vulnerability in phpAdsNew and phpPgAds 2.0.6 and earlier allows remote attackers to inject arbitrary HTML headers via adclick.php and…

CVSS 5.0 EPSS 1.04% Nov 24, 2005
CVE-2005-3646 HIGH

Multiple SQL injection vulnerabilities in lib-sessions.inc.php in phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allow remote attackers to execute…

CVSS 7.5 EPSS 2.23% Nov 17, 2005
CVE-2005-3645 MEDIUM

phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allows remote attackers to obtain the application installation path and other sensitive information…

CVSS 5.0 EPSS 2.26% Nov 17, 2005
CVE-2005-2636 HIGH

SQL injection vulnerability in lib-view-direct.inc.php in phpAdsNew and phpPgAds before 2.0.6 allows remote attackers to execute arbitrary SQL commands via the…

CVSS 7.5 EPSS 1.21% Aug 20, 2005
CVE-2005-2635 MEDIUM

Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot dot) in the…

CVSS 5.0 EPSS 1.82% Aug 20, 2005
CVE-2005-0790 MEDIUM

phpAdsNew 2.0.4 allows remote attackers to obtain sensitive information via a direct request to (1) lib-xmlrpcs.inc.php, (2) maintenance-activation.php, (3) ma…

CVSS 5.0 EPSS 1.43% Mar 20, 2005
CVE-2001-1054 HIGH

PHPAdsNew PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS 7.5 EPSS 1.59% Mar 9, 2002

Showing 1 to 13 CVEs · page 1