Vulnerabilities (CVE)

Filtered by vendor Agares Media Subscribe
Filtered by product Arcadem
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-4552 1 Agares Media 1 Arcadem 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arbitrary SQL commands via the blockpage parameter. NOTE: as of 20070827, the vendor has made conflicting statements regarding whether this issue exists or not.
CVE-2007-4551 1 Agares Media 1 Arcadem 2024-02-04 7.5 HIGH N/A
PHP remote file inclusion vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arbitrary PHP code via a URL in the loadpage parameter.
CVE-2007-6542 1 Agares Media 1 Arcadem 2024-02-04 7.5 HIGH N/A
PHP remote file inclusion vulnerability in admin/frontpage_right.php in Arcadem LE 2.04 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the loadadminpage parameter.