Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2006-4770

Disclosure Date: September 13, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in menu.php in MiniPort@l 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the skiny parameter.
0
Attacker Value
Unknown

CVE-2003-0272

Disclosure Date: May 27, 2003 (last updated February 22, 2025)
admin.php in miniPortail allows remote attackers to gain administrative privileges by setting the miniPortailAdmin cookie to an "adminok" value.
0
Attacker Value
Unknown

CVE-2002-0260

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Buffer overflow in InstantServers MiniPortal 1.1.5 and earlier allows remote attackers to execute arbitrary code via a long login name, which is not properly handled by the logging utility.
0
Attacker Value
Unknown

CVE-2002-0259

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
InstantServers MiniPortal 1.1.5 and earlier stores sensitive login and account data in plaintext in (1) .pwd files in the miniportal/apache directory, or (2) mplog.txt, which could allow local users to gain privileges.
0
Attacker Value
Unknown

CVE-2002-0261

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in InstantServers MiniPortal 1.1.5 and earlier allows remote authenticated users to read arbitrary files via a ... (modified dot dot) in the GET command.
0