Vulnerabilities > Artmedic Webdesign > Artmedic CMS

DATE CVE VULNERABILITY TITLE RISK
2007-10-19 CVE-2007-5600 Code Injection vulnerability in Artmedic Webdesign Artmedic CMS
Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftps, (3) ssh2.sftp, or (4) ssh2.scp URL, in the page parameter, for which PHP remote file inclusion is blocked only for http, https, and ftp URLs.
6.8
2007-10-17 CVE-2007-5489 Path Traversal vulnerability in Artmedic Webdesign Artmedic CMS 3.4
Directory traversal vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
artmedic-webdesign CWE-22
7.5