Vulnerabilities
Vulnerable Software
E107:  >> E107  >> 0.6174  Security Vulnerabilities
e107 0.6174 allows remote attackers to redirect users to other web sites via the download parameter in rate.php, which is used after a user submits a file download rating. NOTE: in the default installation, the e_BASE variable restricts the redirection to the same web site.
CVSS Score
5.0
EPSS Score
0.004
Published
2005-12-07
game_score.php in e107 allows remote attackers to insert high scores via HTTP POST methods utilizing the $player_name, $player_score, and $game_name variables.
CVSS Score
5.0
EPSS Score
0.003
Published
2005-11-16
doping.php in ePing plugin 1.02 and earlier for e107 portal allows remote attackers to execute arbitrary code or overwrite files via (1) shell metacharacters in the eping_count parameter or (2) restricted shell metacharacters such as ">" and "&" in the eping_host parameter, which is not handled by the validation function.
CVSS Score
7.5
EPSS Score
0.018
Published
2005-08-16
The eping_validaddr function in functions.php for the ePing plugin for e107 portal allows remote attackers to execute arbitrary commands via shell metacharacters after a valid argument to the eping_host parameter.
CVSS Score
7.5
EPSS Score
0.01
Published
2005-06-16


Contact Us

Shodan ® - All rights reserved