Vulnerabilities > Cmpro Team

DATE CVE VULNERABILITY TITLE RISK
2007-02-24 CVE-2006-7045 Remote Security vulnerability in Clan Manager Pro
PHP remote file inclusion vulnerability in Clan Manager Pro (CMPRO) 1.1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the (1) rootpath and possibly (2) sitepath parameters to (a) cmpro.ext/comment.core.inc.php and (b) cmpro.intern/comment.core.inc.php.
network
low complexity
cmpro-team
7.5
2007-02-24 CVE-2006-7044 Remote Security vulnerability in Clan Manager Pro
PHP remote file inclusion vulnerability in comment.core.inc.php in Clan Manager Pro (CMPRO) 1.11 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sitepath parameter.
network
low complexity
cmpro-team
7.5
2006-06-09 CVE-2006-2921 Remote File Inclusion vulnerability in Cmpro Team Clan Manager PRO 1.1
PHP remote file inclusion vulnerability in cmpro_header.inc.php in Clan Manager Pro (CMPRO) 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the (1) cm_ext_server and (2) sitepath parameters.
network
high complexity
cmpro-team
5.1