VYPR

Philex

by Philex

CVEs (2)

  • CVE-2007-1697Mar 27, 2007
    risk 0.10cvss epss 0.82

    PHP remote file inclusion vulnerability in header.inc.php in Philex 0.2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CssFile parameter.

  • CVE-2007-1698Mar 27, 2007
    risk 0.03cvss epss 0.06

    download.php in Philex 0.2.3 and earlier allows remote attackers to read arbitrary files and source code, and obtain sensitive information via the file parameter.