Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2014-8877
Disclosure Date: December 05, 2014 (last updated October 05, 2023)
The alterSearchQuery function in lib/controllers/CmdownloadController.php in the CreativeMinds CM Downloads Manager plugin before 2.0.4 for WordPress allows remote attackers to execute arbitrary PHP code via the CMDsearch parameter to cmdownloads/, which is processed by the PHP create_function function.
0
Attacker Value
Unknown
CVE-2008-7001
Disclosure Date: August 19, 2009 (last updated October 04, 2023)
Unrestricted file upload vulnerability in the file manager in Creative Mind Creator CMS 5.0 allows remote attackers to execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown
CVE-2008-4377
Disclosure Date: October 01, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.asp in Creative Mind Creator CMS 5.0 allows remote attackers to execute arbitrary SQL commands via the sideid parameter.
0