RSS   Vulnerabilities for 'Phpmydesktop arcade'   RSS

2006-06-20
 
CVE-2006-3106

 

 
Cross-site scripting (XSS) vulnerability in index.php in phpMyDesktop|Arcade 1.0 allows remote attackers to inject arbitrary web script or HTML via the subsite parameter in the subsite todo.

 
2006-06-01
 
CVE-2006-2747

CWE-Other
 

 
Directory traversal vulnerability in index.php in PhpMyDesktop|arcade 1.0 FINAL allows remote attackers to read arbitrary files or execute PHP code via a .. (dot dot) sequence and trailing null (%00) byte in the subsite parameter in a showsubsite todo.

 


Copyright 2024, cxsecurity.com

 

Back to Top