Vulnerabilities
Vulnerable Software
Profilecms:  >> Profilecms  Security Vulnerabilities
Multiple SQL injection vulnerabilities in index.php in ProfileCMS 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) codes action in the profile-codes module, (2) videos action in the video-codes module, or (3) games action in the arcade-games module.
CVSS Score
7.5
EPSS Score
0.009
Published
2007-11-20
Unrestricted file upload vulnerability in the profiles script in ProfileCMS 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors involving creation of a profile.
CVSS Score
6.8
EPSS Score
0.032
Published
2007-10-30


Contact Us

Shodan ® - All rights reserved