CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2006-0943 HIGH

SQL injection vulnerability in the sondages module in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter…

CVSS 7.5 EPSS 1.27% Mar 1, 2006
CVE-2006-0942 HIGH

SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the aff…

CVSS 7.5 EPSS 1.15% Mar 1, 2006
CVE-2006-0668 HIGH

SQL injection vulnerability in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly in message.ph…

CVSS 7.5 EPSS 1.21% Feb 13, 2006
CVE-2005-1512 HIGH

The Admin panel in PwsPHP 1.2.2 does not properly verify uploaded picture files, which allows remote attackers to upload and possibly execute arbitrary files.

CVSS 7.5 EPSS 1.55% May 11, 2005
CVE-2005-1511 HIGH

PwsPHP 1.2.2 allows remote attackers to bypass authentication and post arbitrary comments via the Pseudo cookie.

CVSS 7.5 EPSS 1.72% May 11, 2005
CVE-2005-1510 HIGH

PwsPHP 1.2.2 allows remote attackers to obtain sensitive information via a direct request to the admin directory, which reveals the path in an error message.

CVSS 7.5 EPSS 1.53% May 11, 2005
CVE-2005-1509 HIGH

SQL injection vulnerability in profil.php in PwsPHP 1.2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVSS 7.5 EPSS 1.24% May 11, 2005
CVE-2005-1508 MEDIUM

Multiple cross-site scripting (XSS) vulnerabilities in PwsPHP 1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) month or (2) anne…

CVSS 6.8 EPSS 1.85% May 11, 2005

Showing 1 to 8 CVEs · page 1