Vulnerabilities (CVE)

Filtered by vendor Sylvain Pasquet Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4708 1 Sylvain Pasquet 1 Bbzl.php 2024-11-21 7.5 HIGH N/A
BbZL.PhP 0.92 allows remote attackers to bypass authentication and gain administrative access by setting the phorum_admin_session cookie to 1.
CVE-2008-4707 1 Sylvain Pasquet 1 Bbzl Php 2024-11-21 5.0 MEDIUM N/A
Directory traversal vulnerability in index.php in BbZL.PhP 0.92 allows remote attackers to access unauthorized directories via a .. (dot dot) in the lien_2 parameter.