VYPR

Arcadem

by Agares Media

CVEs (3)

  • CVE-2007-6542Dec 27, 2007
    risk 0.03cvss epss 0.06

    PHP remote file inclusion vulnerability in admin/frontpage_right.php in Arcadem LE 2.04 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the loadadminpage parameter.

  • CVE-2007-4551Aug 28, 2007
    risk 0.03cvss epss 0.03

    PHP remote file inclusion vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arbitrary PHP code via a URL in the loadpage parameter.

  • CVE-2007-4552Aug 28, 2007
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arbitrary SQL commands via the blockpage parameter. NOTE: as of 20070827, the vendor has made conflicting statements regarding whether this issue exists or not.