Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Burncycle

#18730of 53,624
14.3Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2007-2654
7.5
2007-03-03
Stwc · Stwc-Counter · CVE-2007-1233
**Name of the Vulnerable Software and Affected Versions** STWC-Counter versions 3.4.0.0 and earlier **Description** The issue allows remote attackers to execute arbitrary PHP code. This is achieved via a URL in the `stwc counter verzeichniss` parameter in the downloadcounter.php file. **Recommendations** For versions 3.4.0.0 and earlier, consider restricting access to the downloadcounter.php file until a patch is available. As a temporary workaround, avoid using the `stwc counter verzeichniss` parameter in the affected API endpoint until the issue is resolved.
PT-2007-2536
6.8
2007-02-26
Cs · Cs-Gallery · CVE-2007-1108
**Name of the Vulnerable Software and Affected Versions** CS-Gallery versions 2.0 and earlier **Description** The issue allows remote attackers to execute arbitrary PHP code via a URL in the `album` parameter during a secure `album` `todo` action. **Recommendations** For CS-Gallery versions 2.0 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.