PHP Advanced Transfer Manager
Bugada Andrea · 10 CVEs
Directory traversal vulnerability in index.php in PHP Advanced Transfer Manager (phpATM) 1.30 allows remote attackers t…
May 14, 2007
Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpATM) 1.20 allow remote attacker…
Sep 13, 2006
Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpAtm) 1.21 and earlier allow rem…
Sep 6, 2006
PHP Advanced Transfer Manager 1.00 through 1.30 stores sensitive information, including password hashes, under the web…
Mar 14, 2006
Multiple cross-site scripting (XSS) vulnerabilities in viewers/txt.php in PHP Advanced Transfer Manager 1.30 allow remo…
Sep 20, 2005
PHP Advanced Transfer Manager 1.30 allows remote attackers to obtain sensitive PHP configuration information via a dire…
Sep 20, 2005
PHP Advanced Transfer Manager 1.30 has a default password for the administrator user, which allows remote attackers to…
Sep 20, 2005
Multiple directory traversal vulnerabilities in PHP Advanced Transfer Manager 1.30 allow remote attackers to read arbit…
Sep 20, 2005
PHP remote file inclusion vulnerability in common.php in phpATM 1.21, and possibly earlier versions, allows remote atta…
May 25, 2005
PHP Advanced Transfer Manager (phpATM) 1.21 allows remote attackers to upload arbitrary files via filenames containing…
May 16, 2005
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2007-2659 | Directory traversal vulnerability in index.php in PHP Advanced Transfer Manager (phpATM) 1.30 allows remote attackers to read arbitrary files and obtain script… | MEDIUM | 6.83% | May 14, 2007 |
| CVE-2006-4749 | Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpATM) 1.20 allow remote attackers to execute arbitrary PHP code via the… | HIGH | 2.13% | Sep 13, 2006 |
| CVE-2006-4594 | Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpAtm) 1.21 and earlier allow remote attackers to execute arbitrary PHP c… | HIGH | 2.54% | Sep 6, 2006 |
| CVE-2006-1209 | PHP Advanced Transfer Manager 1.00 through 1.30 stores sensitive information, including password hashes, under the web root with insufficient access control, w… | MEDIUM | 3.39% | Mar 14, 2006 |
| CVE-2005-3000 | Multiple cross-site scripting (XSS) vulnerabilities in viewers/txt.php in PHP Advanced Transfer Manager 1.30 allow remote attackers to inject arbitrary web scr… | MEDIUM | 0.99% | Sep 20, 2005 |
| CVE-2005-2999 | PHP Advanced Transfer Manager 1.30 allows remote attackers to obtain sensitive PHP configuration information via a direct request to test.php. | MEDIUM | 1.18% | Sep 20, 2005 |
| CVE-2005-2998 | PHP Advanced Transfer Manager 1.30 has a default password for the administrator user, which allows remote attackers to upload and execute arbitrary PHP files. | HIGH | 1.45% | Sep 20, 2005 |
| CVE-2005-2997 | Multiple directory traversal vulnerabilities in PHP Advanced Transfer Manager 1.30 allow remote attackers to read arbitrary files via ".." sequences in (1) the… | MEDIUM | 1.55% | Sep 20, 2005 |
| CVE-2005-1681 | PHP remote file inclusion vulnerability in common.php in phpATM 1.21, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via… | HIGH | 6.56% | May 25, 2005 |
| CVE-2005-1604 | PHP Advanced Transfer Manager (phpATM) 1.21 allows remote attackers to upload arbitrary files via filenames containing multiple file extensions, as demonstrate… | HIGH | 5.10% | May 16, 2005 |
Showing 1 to 10 of 10 CVEs