Vulnerabilities > Adam Scheinberg

DATE CVE VULNERABILITY TITLE RISK
2008-07-25 CVE-2008-3311 Code Injection vulnerability in Adam Scheinberg Flip 3.0
PHP remote file inclusion vulnerability in config.php in Adam Scheinberg Flip 3.0 allows remote attackers to execute arbitrary PHP code via a URL in the incpath parameter.
network
low complexity
adam-scheinberg CWE-94
7.5
2007-09-24 CVE-2007-5063 Credentials Management vulnerability in Adam Scheinberg Flip
Adam Scheinberg Flip 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing login credentials via a direct request for var/users.txt.
network
low complexity
adam-scheinberg CWE-255
5.0
2007-09-24 CVE-2007-5062 Permissions, Privileges, and Access Controls vulnerability in Adam Scheinberg Flip
account.php in Adam Scheinberg Flip 3.0 and earlier allows remote attackers to create administrative accounts via the un parameter in a register action.
network
low complexity
adam-scheinberg CWE-264
7.5