VYPR

Ez Ringtone Manager

by Scriptsez

CVEs (2)

  • CVE-2008-6112Feb 11, 2009
    risk 0.03cvss epss 0.02

    Multiple directory traversal vulnerabilities in Ez Ringtone Manager allow remote attackers to read arbitrary files via a .. (dot dot) in the id parameter in a detail action to (1) main.php and (2) template.php in ringtones/.

  • CVE-2006-3004Jun 13, 2006
    risk 0.00cvss epss 0.01

    Multiple cross-site scripting (XSS) vulnerabilities in Ez Ringtone Manager allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in player.php and (2) keyword parameter when performing a search.