Vulnerabilities (CVE)

Filtered by vendor Comsenz Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6958 1 Comsenz 1 Crossday Discuz\! Board 2017-09-29 6.5 MEDIUM N/A
wap/index.php in Crossday Discuz! Board 6.x and 7.x allows remote authenticated users to execute arbitrary PHP code via the creditsformula parameter.
CVE-2008-3554 1 Comsenz 1 Discuz 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in index.php in Discuz! 6.0.1 allows remote attackers to execute arbitrary SQL commands via the searchid parameter in a search action.
CVE-2009-3185 1 Comsenz 2 Crazy Star Plugin, Discuz\! 2017-09-19 7.5 HIGH N/A
SQL injection vulnerability in plugin.php in the Crazy Star plugin 2.0 for Discuz! allows remote authenticated users to execute arbitrary SQL commands via the fmid parameter in a view action.