Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2009-2262

Disclosure Date: June 30, 2009 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in install/di.php in AjaxPortal 3.0 allows remote attackers to execute arbitrary PHP code via a URL in the pathtoserverdata parameter. NOTE: the installation instructions specify deleting the install/ folder.
0
Attacker Value
Unknown

CVE-2009-1509

Disclosure Date: May 01, 2009 (last updated October 04, 2023)
SQL injection vulnerability in ajaxp_backend.php in MyioSoft AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown

CVE-2008-5653

Disclosure Date: December 17, 2008 (last updated October 04, 2023)
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands via the rsargs parameter, as reachable through the username parameter. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2006-3666

Disclosure Date: July 18, 2006 (last updated October 04, 2023)
SQL injection vulnerability in AjaxPortal 3.0, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the 'Search' field, a different vulnerability than CVE-2006-3515.
0
Attacker Value
Unknown

CVE-2006-3515

Disclosure Date: July 11, 2006 (last updated October 04, 2023)
SQL injection vulnerability in the loginADP function in ajaxp.php in AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password parameters.
0