Vulnerabilities (CVE)

Filtered by vendor Philex Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-1697 1 Philex 1 Philex 2025-04-09 10.0 HIGH N/A
PHP remote file inclusion vulnerability in header.inc.php in Philex 0.2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CssFile parameter.
CVE-2007-1698 1 Philex 1 Philex 2025-04-09 5.0 MEDIUM N/A
download.php in Philex 0.2.3 and earlier allows remote attackers to read arbitrary files and source code, and obtain sensitive information via the file parameter.