VYPR

PHP Dir Submit

by Phpdirsubmit

CVEs (2)

  • CVE-2009-3970Nov 18, 2009
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in index.php in PHP Dir Submit (aka WebsiteSubmitter or Submitter Script) allows remote authenticated users to execute arbitrary SQL commands via the aid parameter in a showarticle action.

  • CVE-2009-1787May 26, 2009
    risk 0.03cvss epss 0.00

    Multiple SQL injection vulnerabilities in PHP Dir Submit (aka WebsiteSubmitter and Submitter Script) allow remote attackers to bypass authentication and gain administrative access via the (1) username and (2) password parameters.