VendorsOwlowl_intranet_engine0.8
Vulnerabilities

Owl Owl Intranet Engine 0.8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2006-1149
PHP remote file inclusion vulnerability in lib/OWL_API.php in OWL Intranet Engine 0.82, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in the xrms_file_root parameter, which is not initialized before use.
Published 2006-03-10 · Modified
7.51 PoCEPSS 0.100
CVE-2005-0265
Multiple SQL injection vulnerabilities in browse.php in OWL 0.7 and 0.8 allow remote attackers to execute arbitrary SQL commands via the (1) parent or (2) sortposted parameter.
Published 2005-02-10 · Modified
7.5EPSS 0.013