Vulnerabilities > Rens Rikkerink

DATE CVE VULNERABILITY TITLE RISK
2009-04-29 CVE-2009-1489 Improper Authentication vulnerability in Rens Rikkerink Fungamez
includes/user.php in Fungamez RC1 allows remote attackers to bypass authentication and gain administrative access by setting the user cookie parameter.
network
low complexity
rens-rikkerink CWE-287
7.5
2009-04-29 CVE-2009-1488 Path Traversal vulnerability in Rens Rikkerink Fungamez
Directory traversal vulnerability in admin/load.php in FunGamez RC1 allows remote attackers to include and execute arbitrary local files via a ..
6.8
2009-04-29 CVE-2009-1487 SQL Injection vulnerability in Rens Rikkerink Fungamez
SQL injection vulnerability in pages/login.php in FunGamez RC1 allows remote attackers to execute arbitrary SQL commands via the login_user (aka username) parameter.
network
low complexity
rens-rikkerink CWE-89
7.5