RSS   Vulnerabilities for 'Activekb'   RSS

2010-07-22
 
CVE-2009-4957

CWE-22
 

 
Directory traversal vulnerability in loadpanel.php in Interspire ActiveKB allows remote attackers to read arbitrary files and possibly have unspecified other impact via directory traversal sequences in the Panel parameter.

 
2008-05-19
 
CVE-2008-2338

CWE-264
 

 
Interspire ActiveKB 1.5 and earlier allows remote attackers to gain privileges by setting the auth cookie to true when accessing unspecified scripts in /admin.

 
2007-10-12
 
CVE-2007-5425

CWE-94
 

 
SQL injection vulnerability in admin/index.php in Interspire ActiveKB 1.5 allows remote attackers to execute arbitrary SQL commands via the questId parameter in a hideQuestion ToDo action. NOTE: the catId vector is already covered by CVE-2007-5131.

 
2007-09-27
 
CVE-2007-5131

CWE-89
 

 
SQL injection vulnerability in index.php in Interspire ActiveKB NX 2.x allows remote attackers to execute arbitrary SQL commands via the catId parameter in a browse action. NOTE: it was separately reported that ActiveKB 1.5 is also affected.

 

 >>> Vendor: Interspire 10 Products
Shopping cart
Articlelive
Articlelive nx
Fastfind
Trackpoint nx
Sendstudio
Activekb nx
Activekb
Knowledge manager
Email marketer


Copyright 2024, cxsecurity.com

 

Back to Top