Vulnerabilities (CVE)

Filtered by vendor Lightro Subscribe
Filtered by product Lightro Cms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-0824 1 Lightro 1 Lightro Cms 2024-02-04 7.5 HIGH N/A
PHP remote file inclusion vulnerability in inhalt.php in LightRO CMS 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the dateien[news] parameter.
CVE-2007-0904 1 Lightro 1 Lightro Cms 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in projects.php in LightRO CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter to index.php.