VYPR

Subdreamer

by Subdreamer

CVEs (2)

  • CVE-2005-3423Nov 1, 2005
    risk 0.03cvss epss 0.02

    Multiple SQL injection vulnerabilities in Subdreamer 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the loginusername parameter or (2) cookies to (a) subdreamer.php, (b) ipb2.php, (c) phpbb2.php, (d) vbulletin2.php, and (e) vbulletin3.php.

  • CVE-2010-2339Jun 18, 2010
    risk 0.00cvss epss 0.01

    SQL injection vulnerability in admin/pages.php in Subdreamer CMS 3.x.x allows remote attackers to execute arbitrary SQL commands via the categoryids[] parameter in an update_pages action.