Vulnerabilities > Portailphp

DATE CVE VULNERABILITY TITLE RISK
2007-03-23 CVE-2007-1641 SQL Injection vulnerability in Portailphp 2.0
SQL injection vulnerability in index.php in PortailPHP 2.0 allows remote attackers to execute arbitrary SQL commands via the idnews parameter.
network
low complexity
portailphp
7.5
2006-07-28 CVE-2006-3922 Remote File Include vulnerability in PortailPHP Inscription.PHP
PHP remote file inclusion vulnerability in mod_membre/inscription.php in PortailPHP 1.7 allows remote attackers to execute arbitrary PHP code via a URL in the chemin parameter.
network
low complexity
portailphp
7.5
2005-08-07 CVE-2005-2486 SQL Injection vulnerability in Portailphp 2.4
SQL injection vulnerability in mod_forum/read_message.php in PortailPHP allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php with the affiche parameter set to "Forum-read_mess", a different vulnerability than CVE-2005-1701.
network
low complexity
portailphp
7.5
2005-05-24 CVE-2005-1701 SQL Injection vulnerability in Portailphp 1.3
SQL injection vulnerability in PortailPHP 1.3 allows remote attackers to execute arbitrary SQL commands via the id parameter to the (1) News, (2) File, (3) Liens, or (4) Faq modules.
network
low complexity
portailphp
7.5