VYPR

Koobi CMS

by Dream4

CVEs (5)

  • CVE-2008-4778Oct 29, 2008
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in the gallery module in Koobi CMS 4.3.0 allows remote attackers to execute arbitrary SQL commands via the galid parameter in a showimages action.

  • CVE-2008-1336Mar 13, 2008
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in Koobi CMS 4.2.3 through 4.3.0 allows remote attackers to execute arbitrary SQL commands via the categ parameter in a links action to index.php, a different vector than CVE-2008-1122.

  • CVE-2005-0890May 2, 2005
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in Dream4 Koobi CMS 4.2.3 allows remote attackers to execute arbitrary SQL commands via the area parameter.

  • CVE-2005-0889Mar 24, 2005
    risk 0.03cvss epss 0.00

    Cross-site scripting (XSS) vulnerability in index.php for Dream4 Koobi CMS 4.2.3 allows remote attackers to inject arbitrary web script or HTML via the area parameter.

  • CVE-2005-1373May 3, 2005
    risk 0.00cvss epss 0.01

    Multiple SQL injection vulnerabilities in index.php in Dream4 Koobi CMS 4.2.3 allow remote attackers to execute arbitrary SQL commands via the (1) q or (2) p parameters.