VYPR

Awrate

by Awrate

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2006-63680.040.11Dec 7, 2006PHP remote file inclusion vulnerability in login.php.inc in awrate 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to search.php.
CVE-2007-55990.000.01Oct 19, 2007Multiple PHP remote file inclusion vulnerabilities in awrate 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to (1) 404.php or (2) topbar.php, different vectors than CVE-2006-6368.