Vulnerabilities > Futurenuke
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-03-28 | CVE-2008-1539 | SQL Injection vulnerability in Futurenuke PHP Nuke Platinum 7.6.B.5 SQL injection vulnerability in includes/dynamic_titles.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary SQL commands via the p parameter to modules.php for the Forums module. | 7.5 |
2007-10-24 | CVE-2007-5676 | Code Injection vulnerability in Futurenuke Platinum 7.6.B.5 PHP remote file inclusion vulnerability in modules/Forums/favorites.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary PHP code via a URL in the nuke_bb_root_path parameter. | 6.8 |