VYPR
Vendor

Ecardmax.com

Sign in to watch
Products
3
CVEs
3
Across products
3
Status
Private

Products

3

Recent CVEs

3
CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2007-19060.040.16Apr 10, 2007Directory traversal vulnerability in richedit/keyboard.php in eCardMAX HotEditor (Hot Editor) 4.0, and the HotEditor plugin for MyBB, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the first parameter.
CVE-2009-35980.030.01Oct 8, 2009Cross-site scripting (XSS) vulnerability in survey_result.php in eCardMAX FormXP 2007 allows remote attackers to inject arbitrary web script or HTML via the sid parameter.
CVE-2006-00930.000.00Jan 5, 2006Cross-site scripting (XSS) vulnerability in index.php in @Card ME PHP allows remote attackers to inject arbitrary web script or HTML via the cat parameter.