Vulnerabilities
Vulnerable Software
Bjsintay:  Security Vulnerabilities
SQL injection vulnerability in photo.php in SiteX 0.7.4 beta allows remote attackers to execute arbitrary SQL commands via the albumid parameter.
CVSS Score
7.5
EPSS Score
0.001
Published
2010-04-09
Multiple directory traversal vulnerabilities in SiteX 0.7.4 Build 418 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the THEME_FOLDER parameter to (1) Corporate/homepage.php, (2) Fusion/homepage.php, (3) Joombo/homepage.php, (4) Streamline/homepage.php, and (5) Structure/homepage.php in themes/.
CVSS Score
7.5
EPSS Score
0.009
Published
2009-06-01


Contact Us

Shodan ® - All rights reserved