Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown

CVE-2008-4088

Disclosure Date: September 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the sid parameter.
0
Attacker Value
Unknown

CVE-2008-4092

Disclosure Date: September 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in printfeature.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the artid parameter.
0
Attacker Value
Unknown

CVE-2008-4089

Disclosure Date: September 15, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to inject arbitrary web script or HTML via the sid parameter.
0
Attacker Value
Unknown

CVE-2006-6795

Disclosure Date: December 28, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in gallery/displayCategory.php in the My_eGallery 2.5.6 module in myPHPNuke (MPN) allows remote attackers to execute arbitrary PHP code via a URL in the basepath parameter.
0
Attacker Value
Unknown

CVE-2006-0923

Disclosure Date: February 28, 2006 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in MyPHPNuke (MPN) 1.88 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the letter parameter in reviews.php and (2) the dcategory parameter in download.php.
0
Attacker Value
Unknown

CVE-2003-1372

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in links.php script in myPHPNuke 1.8.8, and possibly earlier versions, allows remote attackers to inject arbitrary HTML and web script via the (1) ratenum or (2) query parameters.
0
Attacker Value
Unknown

CVE-2002-1913

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
phptonuke.php in myPHPNuke 1.8.8 allows remote attackers to read arbitrary files via a full pathname in the filnavn variable.
0