Vulnerabilities (CVE)

Filtered by vendor Php-daily Subscribe
Filtered by product Php-daily
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4757 1 Php-daily 1 Php-daily 2024-02-04 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in PHP-Daily allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) add_postit.php (b) delete.php, and (c) mod_prest_date.php; and the (2) prev parameter to (d) prest_detail.php.
CVE-2008-4758 1 Php-daily 1 Php-daily 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in download_file.php in PHP-Daily allows remote attackers to read arbitrary local files via a .. (dot dot) in the fichier parameter.
CVE-2008-4756 1 Php-daily 1 Php-daily 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in add_prest_date.php in PHP-Daily allows remote attackers to inject arbitrary web script or HTML via the date parameter.