Vulnerabilities > Phphq

DATE CVE VULNERABILITY TITLE RISK
2008-04-27 CVE-2008-1971 Improper Authentication vulnerability in PHPhq Phshoutbox Final
phShoutBox Final 1.5 and earlier only checks passwords when specified in $_POST, which allows remote attackers to gain privileges by setting the (1) phadmin cookie to admin.php, or (2) in 1.4 and earlier, the ssbadmin cookie to shoutadmin.php.
network
low complexity
phphq CWE-287
7.5
2007-08-25 CVE-2007-4527 Unspecified vulnerability in PHPhq Phuploader 1.2
Unrestricted file upload vulnerability in phUploader.php in phphq.Net phUploader 1.2 allows remote attackers to upload and execute arbitrary code via unspecified vectors.
network
low complexity
phphq
7.5