Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mahmood Ali

#18000of 53,633
15Total CVSS
Vulnerabilities · 2
High
2
PT-2007-1830
7.5
2007-01-19
Uberghey · Uberghey Cms · CVE-2007-0359
Name of the Vulnerable Software and Affected Versions: Uberghey CMS version 0.3.1 Description: The issue allows remote attackers to execute arbitrary PHP code via a URL in the `setup folder` parameter in the frontpage.php file. Recommendations: For Uberghey CMS version 0.3.1, consider restricting access to the `setup folder` parameter in the frontpage.php file until a patch is available. As a temporary workaround, avoid using the `setup folder` parameter with untrusted input. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2006-7193
7.5
2006-12-15
Exlor · Exlor · CVE-2006-6591
**Name of the Vulnerable Software and Affected Versions** EXlor version 1.0 **Description** A remote file inclusion issue in the fonctions/template.php file allows remote attackers to execute arbitrary PHP code via a URL in the `repphp` parameter. **Recommendations** For EXlor version 1.0, consider restricting access to the `repphp` parameter in the affected API endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.