VendorsWebportalwebportal_cmsall versions
Vulnerabilities

Webportal Webportal CMS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2009-1444
PHP remote file inclusion vulnerability in indexk.php in WebPortal CMS 0.8-beta allows remote attackers to execute arbitrary PHP code via a URL in the lib_path parameter.
Published 2009-04-27 · Modified
7.51 PoCEPSS 0.023
CVE-2007-6664
SQL injection vulnerability in index.php in WebPortal CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter.
Published 2008-01-04 · Modified
7.51 PoCEPSS 0.023
CVE-2008-4345
SQL injection vulnerability in download.php in WebPortal CMS 0.7.4 and earlier allows remote attackers to execute arbitrary SQL commands via the aid parameter.
Published 2008-09-30 · Modified
7.51 PoCEPSS 0.010
CVE-2008-0142
Multiple SQL injection vulnerabilities in WebPortal CMS 0.6-beta allow remote attackers to execute arbitrary SQL commands via the user_name parameter to actions.php, and unspecified other vectors.
Published 2008-01-08 · Modified
6.81 PoCEPSS 0.008