Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown

CVE-2012-4990

Disclosure Date: October 22, 2012 (last updated October 05, 2023)
SQL injection vulnerability in admin/campaign-zone-link.php in OpenX 2.8.10 before revision 81823 allows remote attackers to execute arbitrary SQL commands via the ids[] parameter in a link action.
0
Attacker Value
Unknown

CVE-2009-4830

Disclosure Date: April 27, 2010 (last updated October 04, 2023)
Unspecified vulnerability in OpenX 2.8.1 and 2.8.2 allows remote attackers to bypass authentication and obtain access to an Administrator account via unknown vectors, possibly related to www/admin/install.php, www/admin/install-plugins.php, and other www/admin/ files.
0
Attacker Value
Unknown

CVE-2009-4098

Disclosure Date: November 29, 2009 (last updated October 04, 2023)
Unrestricted file upload vulnerability in banner-edit.php in OpenX adserver 2.8.1 and earlier allows remote authenticated users with banner / file upload permissions to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an images directory.
0
Attacker Value
Unknown

CVE-2008-6163

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in www/delivery/ac.php in OpenX 2.6.1 allows remote attackers to execute arbitrary SQL commands via the bannerid parameter.
0
Attacker Value
Unknown

CVE-2009-0291

Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in fc.php in OpenX 2.6.3 allows remote attackers to include and execute arbitrary files via a .. (dot dot) in the MAX_type parameter.
0