VYPR
Vendor
Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-17111Cri0.689.80.18Dec 11, 2017Posty Readymade Classifieds Script 1.0 allows an attacker to inject SQL commands via a listings.php?catid= or ads-details.php?ID= request.
CVE-2017-17568Hig0.497.50.00Dec 13, 2017Scubez Posty Readymade Classifieds has Incorrect Access Control for visiting admin/user_activate_submit.php (aka the backend PHP script), which might allow remote attackers to obtain sensitive information via a direct request.
CVE-2017-17567Hig0.497.50.00Dec 13, 2017Scubez Posty Readymade Classifieds has SQL Injection via the admin/user_activate_submit.php ID parameter.
CVE-2017-17569Med0.406.10.00Dec 13, 2017Scubez Posty Readymade Classifieds has XSS via the admin/user_activate_submit.php ID parameter.