Vulnerabilities > Zanfi Solutions > Zanfi CMS Lite > 1.1

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-2196 Remote Security vulnerability in Zanfi Solutions Zanfi CMS Lite 1.1
Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others.
network
low complexity
zanfi-solutions
5.0
2004-12-31 CVE-2004-2195 Remote File Include vulnerability in Zanfi Solutions Zanfi CMS Lite 1.1
PHP remote file inclusion vulnerability in index.php in Zanfi CMS lite 1.1 allows remote attackers to execute arbitrary PHP code via the inc parameter.
network
low complexity
zanfi-solutions
5.0