Vulnerabilities (CVE)

Filtered by vendor Scripteen Subscribe
Filtered by product Free Image Hosting Script
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2892 1 Scripteen 1 Free Image Hosting Script 2024-02-14 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in header.php in Scripteen Free Image Hosting Script 2.3 allow remote attackers to execute arbitrary SQL commands via a (1) cookid or (2) cookgid cookie.
CVE-2009-4987 1 Scripteen 1 Free Image Hosting Script 2023-12-10 7.5 HIGH N/A
admin/header.php in Scripteen Free Image Hosting Script 2.3 allows remote attackers to bypass authentication and gain administrative access by setting the cookgid cookie value to 1, a different vector than CVE-2008-3211.
CVE-2008-3211 1 Scripteen 1 Free Image Hosting Script 2023-12-10 7.5 HIGH N/A
Scripteen Free Image Hosting Script 1.2 and 1.2.1 allows remote attackers to bypass authentication and gain administrative access by setting the cookid cookie value to 1.
CVE-2008-3212 1 Scripteen 1 Free Image Hosting Script 2023-12-10 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in Scripteen Free Image Hosting Script 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to admin/login.php, or the (3) uname or (4) pass parameter to login.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.