VYPR

Sitedepth CMS

by Sitedepth

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2006-37930.040.08Jul 24, 2006PHP remote file inclusion vulnerability in constants.php in SiteDepth CMS 3.01 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the SD_DIR parameter.
CVE-2007-34040.030.06Jun 26, 2007Directory traversal vulnerability in ShowImage.php in SiteDepth CMS 3.44 allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.