Vulnerabilities > Sips > Sips > 0.2.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2006-09-13 | CVE-2006-4733 | Remote File Include vulnerability in SIPS Box.Inc.PHP PHP remote file inclusion vulnerability in sipssys/code/box.inc.php in Haakon Nilsen simple, integrated publishing system (SIPS) 0.3.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the config[sipssys] parameter. | 7.5 |
2003-12-31 | CVE-2003-1553 | Information Exposure vulnerability in Sips 0.2.2 Haakon Nilsen Simple Internet Publishing System (SIPS) 0.2.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain password and other user information via a direct request to a user-specific configuration directory. | 4.3 |