Vulnerabilities > Philex

DATE CVE VULNERABILITY TITLE RISK
2007-03-27 CVE-2007-1698 Remote And Local File Include vulnerability in Philex
download.php in Philex 0.2.3 and earlier allows remote attackers to read arbitrary files and source code, and obtain sensitive information via the file parameter.
network
low complexity
philex
5.0
2007-03-27 CVE-2007-1697 Remote And Local File Include vulnerability in Philex
PHP remote file inclusion vulnerability in header.inc.php in Philex 0.2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CssFile parameter.
network
low complexity
philex
critical
10.0