Vulnerabilities > Phpmytourney

DATE CVE VULNERABILITY TITLE RISK
2008-03-03 CVE-2008-1128 Code Injection vulnerability in PHPmytourney 2
PHP remote file inclusion vulnerability in tourney/index.php in phpMyTourney 2 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.
6.8
2007-09-08 CVE-2007-4757 Improper Input Validation vulnerability in PHPmytourney
PHP remote file inclusion vulnerability in menu.php in phpMytourney allows remote attackers to execute arbitrary PHP code via a URL in the functions_file parameter.
network
low complexity
phpmytourney CWE-20
7.5