Vulnerabilities (CVE)

Filtered by vendor Dreamcodes Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-1933 1 Dreamcodes 1 Pcp-guestbook 2024-02-28 7.5 HIGH N/A
Multiple directory traversal vulnerabilities in PcP-Guestbook (PcP-Book) 3.0 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter to (1) index.php, (2) gb.php, or (3) faq.php.
CVE-2007-1937 1 Dreamcodes 1 Scorp Book 2024-02-28 6.8 MEDIUM N/A
PHP remote file inclusion vulnerability in smilies.php in Scorp Book 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the config parameter.