Vulnerabilities (CVE)

Filtered by vendor Customerparadigm Subscribe
Filtered by product Pagedirector Cms
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-2685 1 Customerparadigm 1 Pagedirector Cms 2024-02-28 7.5 HIGH N/A
siteadmin/adduser.php in Customer Paradigm PageDirector CMS does not properly restrict access, which allows remote attackers to bypass intended restrictions and add administrative users via a direct request.
CVE-2010-2683 1 Customerparadigm 1 Pagedirector Cms 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in result.php in Customer Paradigm PageDirector CMS allows remote attackers to execute arbitrary SQL commands via the sub_catid parameter.
CVE-2010-2684 1 Customerparadigm 1 Pagedirector Cms 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in index.php in Customer Paradigm PageDirector CMS allows remote attackers to execute arbitrary SQL commands via the id parameter.