Vulnerabilities > Phpselect

DATE CVE VULNERABILITY TITLE RISK
2006-10-03 CVE-2006-5118 Remote File Include vulnerability in PHPSelect Web Development Index.PHP3
PHP remote file inclusion vulnerability in index.php3 in the PDD package for PHPSelect Web Development Division allows remote attackers to execute arbitrary PHP code via a URL in the Application_Root parameter.
network
low complexity
phpselect
7.5
2006-04-05 CVE-2006-1622 Cross-Site Scripting vulnerability in Phpselect
Cross-site scripting (XSS) vulnerability in PHPSelect linksubmit allows remote attackers to inject arbitrary web script or HTML via (1) the description parameter to linklist.php and possibly other vectors involving (2) index.php and (3) linksubmit.php.
network
phpselect
6.8