Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

The X-Hacker

Researcher fromX9 Team
#18184of 53,635
15Total CVSS
Vulnerabilities · 2
High
2
PT-2009-2470
7.5
2009-08-18
Creative Mind · Creative Mind Creator Cms · CVE-2008-7001
**Name of the Vulnerable Software and Affected Versions** Creative Mind Creator CMS version 5.0 **Description** The issue concerns an unrestricted file upload vulnerability in the file manager. This allows remote attackers to execute arbitrary code. **Recommendations** For Creative Mind Creator CMS version 5.0, update to a version that addresses this issue, as the current version allows remote attackers to execute arbitrary code via file uploads. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2008-5626
7.5
2008-10-01
Creative Mind · Creative Mind Creator Cms · CVE-2008-4377
Name of the Vulnerable Software and Affected Versions: Creative Mind Creator CMS version 5.0 Description: The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `sideid` parameter in the "index.asp" file. Recommendations: For Creative Mind Creator CMS version 5.0, consider restricting access to the `sideid` parameter in the index.asp file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.