Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Jadi

#20486de 53,632
12.5CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2009-1892
5.0
2009-03-06
Social Site Generator · Social Site Generator · CVE-2008-6420
Name of the Vulnerable Software and Affected Versions: Social Site Generator (SSG) version 2.0 Description: The issue allows remote attackers to read arbitrary files. This is achieved via the `file` parameter to several API endpoints: "filedload.php", "webadmin/download.php", and "webadmin/download file.php". Recommendations: For Social Site Generator (SSG) version 2.0, as a temporary workaround, consider restricting access to the `file` parameter in the affected API endpoints until a patch is available.
PT-2008-4096
7.5
2008-06-10
Open Source Matters · Joomla! · CVE-2008-2643
**Name of the Vulnerable Software and Affected Versions** Joomla! component Bible Study (com biblestudy) versions prior to 6.0.7c **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id` parameter in a mediaplayer action to "index.php". **Recommendations** For versions prior to 6.0.7c, update to version 6.0.7c or later to resolve the issue.