Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown
CVE-2008-4088
Disclosure Date: September 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the sid parameter.
0
Attacker Value
Unknown
CVE-2008-4092
Disclosure Date: September 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in printfeature.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the artid parameter.
0
Attacker Value
Unknown
CVE-2008-4089
Disclosure Date: September 15, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to inject arbitrary web script or HTML via the sid parameter.
0
Attacker Value
Unknown
CVE-2006-6795
Disclosure Date: December 28, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in gallery/displayCategory.php in the My_eGallery 2.5.6 module in myPHPNuke (MPN) allows remote attackers to execute arbitrary PHP code via a URL in the basepath parameter.
0
Attacker Value
Unknown
CVE-2006-0923
Disclosure Date: February 28, 2006 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in MyPHPNuke (MPN) 1.88 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the letter parameter in reviews.php and (2) the dcategory parameter in download.php.
0
Attacker Value
Unknown
CVE-2003-1372
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in links.php script in myPHPNuke 1.8.8, and possibly earlier versions, allows remote attackers to inject arbitrary HTML and web script via the (1) ratenum or (2) query parameters.
0
Attacker Value
Unknown
CVE-2002-1913
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
phptonuke.php in myPHPNuke 1.8.8 allows remote attackers to read arbitrary files via a full pathname in the filnavn variable.
0