Vulnerabilities > Jnshosts

DATE CVE VULNERABILITY TITLE RISK
2008-08-04 CVE-2008-3455 Code Injection vulnerability in Jnshosts PHP Hosting Directory 2.0
PHP remote file inclusion vulnerability in include/admin.php in JnSHosts PHP Hosting Directory 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the rd parameter.
network
low complexity
jnshosts CWE-94
critical
10.0
2008-08-04 CVE-2008-3454 Permissions, Privileges, and Access Controls vulnerability in Jnshosts PHP Hosting Directory 2.0
JnSHosts PHP Hosting Directory 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the "adm" cookie value to 1.
network
low complexity
jnshosts CWE-264
7.5