VYPR
Vendor

Ghlab

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2007-5737Oct 30, 2007
    risk 0.03cvss epss 0.04

    Unrestricted file upload vulnerability in component/upload.jsp in Korean GHBoard allows remote attackers to upload arbitrary files via unspecified vectors, probably involving a direct request.

  • CVE-2007-5739Oct 30, 2007
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in component/flashupload/download.jsp in the FlashUpload component in Korean GHBoard allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.

  • CVE-2007-5738Oct 30, 2007
    risk 0.00cvss epss 0.00

    The FlashUpload component in Korean GHBoard uses a client-side protection mechanism to prevent uploading of dangerous file extensions, which allows remote attackers to bypass restrictions and upload arbitrary files via a modified copy of component/flashupload/upload.html.