Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2009-4763
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the ClickHeat plugin, as used in phpMyVisites before 2.4, has unknown impact and attack vectors. NOTE: due to lack of details from the vendor, it is not clear whether this is related to CVE-2008-5793.
0
Attacker Value
Unknown
CVE-2007-0893
Disclosure Date: February 12, 2007 (last updated October 04, 2023)
Directory traversal vulnerability in phpMyVisites before 2.2 allows remote attackers to include arbitrary files via leading ".." sequences on the pmv_ck_view COOKIE parameter, which bypasses the protection scheme.
0
Attacker Value
Unknown
CVE-2007-0892
Disclosure Date: February 12, 2007 (last updated October 04, 2023)
CRLF injection vulnerability in phpMyVisites before 2.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the url parameter, when the pagename parameter begins with "FILE:".
0
Attacker Value
Unknown
CVE-2007-0891
Disclosure Date: February 12, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the GetCurrentCompletePath function in phpmyvisites.php in phpMyVisites before 2.2 allows remote attackers to inject arbitrary web script or HTML via the query string.
0
Attacker Value
Unknown
CVE-2005-1325
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
set_lang.php in phpMyVisites 1.3 allows remote attackers to read and include arbitrary files via the mylang parameter.
0
Attacker Value
Unknown
CVE-2005-1324
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in index.php for phpMyVisites allow remote attackers to inject arbitrary web script or HTML via the (1) part, (2) per, or (3) site parameters.
0