Vulnerabilities > Shadowed Portal

DATE CVE VULNERABILITY TITLE RISK
2006-09-19 CVE-2006-4885 Remote Security vulnerability in Shadowed Portal
PHP remote file inclusion vulnerability in Shadowed Portal 5.599 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root parameter in (1) footer.php and (2) header.php.
network
low complexity
shadowed-portal
7.5
2006-09-15 CVE-2006-4826 Remote File Include vulnerability in Shadowed Portal Bottom.PHP
PHP remote file inclusion vulnerability in bottom.php in Shadowed Portal 5.599 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.
network
low complexity
shadowed-portal
7.5
2006-04-11 CVE-2006-1701 Cross-Site Scripting vulnerability in Shadowed Portal
Cross-site scripting (XSS) vulnerability in the Pages module in Shadowed Portal allows remote attackers to inject arbitrary web script or HTML via the page parameter to load.php.
network
high complexity
shadowed-portal
2.6