Vulnerabilities (CVE)

Filtered by vendor Alstrasoft Subscribe
Filtered by product Forum Pay Per Post Exchange
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3954 1 Alstrasoft 1 Forum Pay Per Post Exchange 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange allows remote attackers to execute arbitrary SQL commands via the cat parameter in a showcat action.
CVE-2008-0440 1 Alstrasoft 1 Forum Pay Per Post Exchange 2024-02-28 5.0 MEDIUM N/A
AlstraSoft Forum Pay Per Post Exchange 2.0 stores passwords in cleartext, which makes it easier for attackers to access user accounts.
CVE-2008-0429 1 Alstrasoft 1 Forum Pay Per Post Exchange 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange 2.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter in a forum_catview action.