Vulnerabilities > Francisco Burzi > PHP Nuke > 7.0.final

DATE CVE VULNERABILITY TITLE RISK
2004-04-04 CVE-2004-1986 Input Validation vulnerability in Coppermine Photo Gallery
Directory traversal vulnerability in modules.php in Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attackers with administrative privileges to read arbitrary files via a ..
network
low complexity
coppermine francisco-burzi
5.0
2004-03-22 CVE-2004-1840 Cross-Site Scripting vulnerability in PHP-Nuke MS-Analysis Module
Multiple cross-site scripting (XSS) vulnerabilities in MS Analysis module 2.0 for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via the (1) screen parameter to modules.php, (2) module_name parameter to title.php, (3) sortby parameter to modules.php, or (4) overview parameter to modules.php.
network
francisco-burzi
4.3
2004-03-22 CVE-2004-1839 Remote Path Disclosure vulnerability in PHP-Nuke MS-Analysis Module
MS Analysis module 2.0 for PHP-Nuke allows remote attackers to obtain sensitive information via a direct request to (1) browsers.php, (2) mstrack.php, or (3) title.php, which reveal the full path in a PHP error message.
network
low complexity
francisco-burzi
5.0