Vulnerabilities > PHP Nuke > High

DATE CVE VULNERABILITY TITLE RISK
2006-12-01 CVE-2006-6217 Remote Security vulnerability in PHP-Nuke Mermaid Module 1.2
PHP remote file inclusion vulnerability in formdisp.php in the Mermaid 1.2 module for PHP-Nuke allows remote attackers to execute arbitrary PHP code via a URL in the module_name parameter.
network
low complexity
php-nuke
7.5
2006-07-18 CVE-2006-3599 SQL-Injection vulnerability in Advanced Classified Module
SQL injection vulnerability in the Nuke Advanced Classifieds module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id_ads parameter in an EditAds op.
network
low complexity
php-nuke
7.5
2006-07-18 CVE-2006-3598 SQL Injection vulnerability in PHP-Nuke Sections Module 'artid' Parameter
SQL injection vulnerability in the Sections module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the artid parameter in a viewarticle op.
network
low complexity
php-nuke
7.5