VYPR

Ad Manager Pro

by Php Web Scripts

CVEs (4)

  • CVE-2006-3192Jun 23, 2006
    risk 0.04cvss epss 0.12

    PHP remote file inclusion vulnerability in Ad Manager Pro 2.6 allows remote attackers to execute arbitrary PHP code via a URL in the (1) ipath parameter in common.php and (2) unspecified vectors in ad.php.

  • CVE-2010-4843Sep 27, 2011
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in website-page.php in PHP Web Scripts Ad Manager Pro 3.0 allows remote attackers to execute arbitrary SQL commands via the pageId parameter.

  • CVE-2009-4828Apr 27, 2010
    risk 0.03cvss epss 0.00

    Cross-site request forgery (CSRF) vulnerability in administration/admins.php in Ad Manager Pro (aka AdManagerPro) 3.0 allows remote attackers to hijack the authentication of administrators for requests that create new administrative users via an admin_created action. NOTE: some of these details are obtained from third party information.

  • CVE-2005-4233Dec 14, 2005
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in advertiser_statistic.php in Ad Manager Pro 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ad_number parameter.