Vulnerabilities > Zoph

DATE CVE VULNERABILITY TITLE RISK
2014-12-03 CVE-2014-9236 Cross-Site Scripting vulnerability in Zoph
Cross-site scripting (XSS) vulnerability in php/edit_photos.php in Zoph (aka Zoph Organizes Photos) 0.9.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) photographer_id or (2) _crumb parameter.
network
zoph CWE-79
4.3
2014-12-03 CVE-2014-9235 SQL Injection vulnerability in Zoph
Multiple SQL injection vulnerabilities in Zoph (aka Zoph Organizes Photos) 0.9.1 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) _action parameter to group.php or (2) user.php or the (3) location_id parameter to photos.php in php/.
network
low complexity
zoph CWE-89
6.5
2009-07-07 CVE-2009-2343 Cross-Site Scripting vulnerability in Zoph
Cross-site scripting (XSS) vulnerability in people.php in Zoph before 0.7.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
zoph CWE-79
4.3
2009-06-27 CVE-2008-6838 Cross-Site Scripting vulnerability in Zoph 0.7.2.1
Cross-site scripting (XSS) vulnerability in search.php in Zoph 0.7.2.1 allows remote attackers to inject arbitrary web script or HTML via the _off parameter.
network
zoph CWE-79
4.3
2009-06-27 CVE-2008-6837 SQL Injection vulnerability in Zoph 0.7.2.1
SQL injection vulnerability in Zoph 0.7.2.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different issue than CVE-2008-3258.
network
low complexity
zoph CWE-89
7.5
2008-07-22 CVE-2008-3258 SQL Injection vulnerability in Zoph
Multiple SQL injection vulnerabilities in Zoph before 0.7.0.5 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.
network
low complexity
zoph CWE-89
7.5
2007-07-19 CVE-2007-3905 SQL Injection vulnerability in Zoph _Order
SQL injection vulnerability in Zoph before 0.7.0.1 might allow remote attackers to execute arbitrary SQL commands via the _order parameter to (1) photos.php and (2) edit_photos.php.
network
low complexity
zoph
7.5