Vulnerabilities (CVE)

Filtered by vendor Rivetcode Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-4996 1 Rivetcode 1 Rivettracker 2024-11-21 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in RivetTracker 1.03 and earlier allow remote attackers to execute arbitrary SQL commands via the hash parameter to (1) dltorrent.php or (2) torrent_functions.php.
CVE-2012-4993 1 Rivetcode 1 Rivettracker 2024-11-21 7.5 HIGH N/A
torrent_functions.php in RivetTracker 1.03 and earlier does not properly restrict access, which allows remote attackers to have an unspecified impact.
CVE-2008-7207 1 Rivetcode 1 Rivettracker 2024-11-21 2.1 LOW N/A
RivetTracker before 1.0 stores passwords in cleartext in config.php, which allows local users to discover passwords by reading config.php.