Vulnerabilities > Domphp

DATE CVE VULNERABILITY TITLE RISK
2015-01-13 CVE-2014-10038 SQL Injection vulnerability in Domphp
SQL injection vulnerability in agenda/indexdate.php in DomPHP 0.83 and earlier allows remote attackers to execute arbitrary SQL commands via the ids parameter.
network
low complexity
domphp CWE-89
7.5
2015-01-13 CVE-2014-10037 Path Traversal vulnerability in Domphp
Directory traversal vulnerability in DomPHP 0.83 and earlier allows remote attackers to have unspecified impact via a ..
network
low complexity
domphp CWE-22
7.5
2009-02-05 CVE-2008-6064 SQL Injection vulnerability in Domphp 0.81
Multiple SQL injection vulnerabilities in DomPHP 0.81 allow remote attackers to execute arbitrary SQL commands via the cat parameter to agenda/index.php, and unspecified other vectors.
network
low complexity
domphp CWE-89
7.5
2008-02-13 CVE-2008-0745 Path Traversal vulnerability in Domphp 0.82
Directory traversal vulnerability in aides/index.php in DomPHP 0.82 allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
domphp CWE-22
7.5
2008-01-15 CVE-2008-0283 Code Injection vulnerability in Domphp
PHP remote file inclusion vulnerability in /aides/index.php in DomPHP 0.81 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.
network
domphp CWE-94
6.8
2008-01-15 CVE-2008-0282 SQL Injection vulnerability in Domphp
SQL injection vulnerability in welcome/inscription.php in DomPHP 0.81 and earlier allows remote attackers to execute arbitrary SQL commands via the mail parameter.
network
low complexity
domphp CWE-89
7.5