Vulnerabilities > Ekilat LLC > PHP Reactor > 1.27pl1

DATE CVE VULNERABILITY TITLE RISK
2006-08-05 CVE-2006-3983 Remote File Include vulnerability in Ekilat LLC PHP(Reactor) 1.27Pl1
PHP remote file inclusion vulnerability in editprofile.php in php(Reactor) 1.27pl1 allows remote attackers to execute arbitrary PHP code via a URL in the pathtohomedir parameter.
network
low complexity
ekilat-llc
7.5
2002-12-31 CVE-2002-2424 Cross-Site Scripting vulnerability in Ekilat LLC PHP(Reactor) 1.27Pl1
Cross-site scripting (XSS) vulnerability in PHP(Reactor) 1.2.7 pl1 allows remote attackers to inject arbitrary web script or HTML via Javascript in the style attribute of an HTML tag.
network
ekilat-llc CWE-79
4.3