Vulnerabilities (CVE)

Filtered by vendor China-on-site Subscribe
Filtered by product Flexphpic
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6142 1 China-on-site 1 Flexphpic 2023-12-10 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPic 0.0.4 and FlexPHPic Pro 0.0.3, and other 0.0.x versions, allow remote attackers to execute arbitrary SQL commands via (1) the checkuser parameter (aka username field), or (2) the checkpass parameter (aka password field), to admin/index.php.