VYPR

Samphpweb

by Spacial Audio Solutions

CVEs (2)

  • CVE-2008-0187Jan 9, 2008
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in songinfo.php in SAM Broadcaster samPHPweb, possibly 4.2.2 and earlier, allows remote attackers to execute arbitrary SQL commands via the songid parameter.

  • CVE-2008-0143Jan 8, 2008
    risk 0.03cvss epss 0.04

    PHP remote file inclusion vulnerability in common/db.php in samPHPweb, possibly 4.2.2 and others, as provided with SAM Broadcaster, allows remote attackers to execute arbitrary PHP code via a URL in the commonpath parameter.