Vulnerabilities (CVE)

Filtered by vendor Codegrrl Subscribe
Filtered by product Phpcurrently
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-3571 1 Codegrrl 5 Phpcalendar, Phpclique, Phpcurrently and 2 more 2023-12-10 5.0 MEDIUM N/A
PHP file inclusion vulnerability in protection.php in CodeGrrl (a) PHPCalendar 1.0, (b) PHPClique 1.0, (c) PHPCurrently 2.0, (d) PHPFanBase 2.1, and (e) PHPQuotes 1.0 allows remote attackers to include arbitrary local files via the siteurl parameter when register_globals is enabled. NOTE: It was later reported that PHPFanBase 2.2 is also affected.