Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Blaster

#15499of 53,624
17.5Total CVSS
Vulnerabilities · 2
High
2
PT-2007-2271
7.5
2007-02-07
Mysql Server · Mysqlnewsengine · CVE-2007-0828
Name of the Vulnerable Software and Affected Versions: MySQLNewsEngine (affected versions not specified) Description: A remote file inclusion issue in the affichearticles.php3 file of MySQLNewsEngine allows remote attackers to execute arbitrary PHP code. This is achieved by providing a URL in the `newsenginedir` parameter. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2006-6963
10
2006-12-07
Unknown · Khaledmuratlist · CVE-2006-6351
**Name of the Vulnerable Software and Affected Versions** KhaledMuratList (affected versions not specified) **Description** The issue concerns the storage of sensitive data under the web root with insufficient access control. This allows remote attackers to download a database via a direct request for specific files, such as `CL2F9R1A2C1N.mdb` or `Data2F9R1A2C1N.mdb`. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.