VYPR

Eurologon CMS

by Eurologon

CVEs (2)

  • CVE-2007-6185Nov 30, 2007
    risk 0.03cvss epss 0.06

    Directory traversal vulnerability in users/files.php in Eurologon CMS allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter in a download action, as demonstrated by a certain PHP file containing database credentials.

  • CVE-2007-6164Nov 29, 2007
    risk 0.03cvss epss 0.00

    Multiple SQL injection vulnerabilities in Eurologon CMS allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) reviews.php, (2) links.php and (3) articles.php.