Filtered by vendor Frax
Subscribe
Total
3 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2009-1781 | 1 Frax | 1 Php Recommend | 2025-04-09 | 7.5 HIGH | N/A |
|
Static code injection vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to inject arbitrary PHP code into phpre_config.php via the form_aula parameter.
|
|||||
| CVE-2009-1779 | 1 Frax | 1 Php Recommend | 2025-04-09 | 7.5 HIGH | N/A |
|
PHP remote file inclusion vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the form_include_template parameter.
|
|||||
| CVE-2009-1780 | 1 Frax | 1 Php Recommend | 2025-04-09 | 7.5 HIGH | N/A |
|
admin.php in Frax.dk Php Recommend 1.3 and earlier does not require authentication when the user password is changed, which allows remote attackers to gain administrative privileges via modified form_admin_user and form_admin_pass parameters.
|
|||||