VYPR

BugPort

by BugPort

CVEs (2)

  • CVE-2005-4608Dec 31, 2005
    risk 0.00cvss epss 0.01

    SQL injection vulnerability in index.php in BugPort 1.147 allows remote attackers to execute arbitrary SQL commands via the (1) devWherePair[0], (2) orderBy, and (3) where parameters.

  • CVE-2005-4609Dec 31, 2005
    risk 0.00cvss epss 0.01

    index.php in BugPort 1.147 and earlier allows remote attackers to obtain sensitive information such as full path and system configuration via an invalid action parameter.