Vulnerabilities > Sisfo Kampus

DATE CVE VULNERABILITY TITLE RISK
2007-09-14 CVE-2007-4895 Path Traversal vulnerability in Sisfo Kampus Sisfo Kampus 2006
Directory traversal vulnerability in dwoprn.php in Sisfo Kampus 2006 (Semarang 3) allows remote attackers to read arbitrary files via the f parameter.
network
low complexity
sisfo-kampus CWE-22
5.0
2007-09-11 CVE-2007-4820 Path Traversal vulnerability in Sisfo Kampus Sisfo Kampus 2006
Absolute path traversal vulnerability in blanko.preview.php in Sisfo Kampus 2006 allows remote attackers to read arbitrary local files, and possibly execute local PHP scripts, via the nmf parameter.
network
low complexity
sisfo-kampus CWE-22
7.5
2006-11-28 CVE-2006-6140 Remote Security vulnerability in Sisfo Kampus Sisfo Kampus 2006
PHP remote file inclusion vulnerability in Sisfo Kampus 2006 (Semarang 3) allows remote attackers to execute arbitrary PHP code via a URL in the slnt parameter to (1) index.php and (2) print.php.
network
low complexity
sisfo-kampus
7.5
2006-11-28 CVE-2006-6139 Directory Traversal vulnerability in Sisfo Kampus Sisfo Kampus 2006
Directory traversal vulnerability in downloadexcel.php in Sisfo Kampus 2006 (Semarang 3) allows remote attackers to read arbitrary files via the fn parameter.
network
low complexity
sisfo-kampus
5.0
2006-11-28 CVE-2006-6138 Remote File Include vulnerability in Sisfo Kampus Sisfo Kampus 0.8
Directory traversal vulnerability in download.php in Sisfo Kampus 0.8 allows remote attackers to list arbitrary directories via an absolute pathname in the dir parameter.
network
low complexity
sisfo-kampus
5.0
2006-11-28 CVE-2006-6137 Remote File Include vulnerability in Sisfo Kampus Sisfo Kampus 0.8
Multiple PHP remote file inclusion vulnerabilities in Sisfo Kampus 0.8 allow remote attackers to execute arbitrary PHP code via a URL in the (1) exec parameter to index.php or (2) print parameter to print.php, which is also accessible via the print command to index.php.
network
low complexity
sisfo-kampus
7.5