Vulnerabilities
Vulnerable Software
Auracms:  >> Auracms  >> 1.5_rc  Security Vulnerabilities
Directory traversal vulnerability in index.php in AuraCMS 2.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the pilih parameter.
CVSS Score
7.5
EPSS Score
0.054
Published
2007-09-17
Multiple SQL injection vulnerabilities in AuraCMS 1.5rc allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) hal.php, (2) cetak.php, (3) lihat.php, (4) pesan.php, and (5) teman.php, different vectors than CVE-2007-4171. NOTE: the scripts may be accessed through requests to the product's top-level default URI, using the pilih parameter, in some circumstances.
CVSS Score
7.5
EPSS Score
0.008
Published
2007-09-11


Contact Us

Shodan ® - All rights reserved