Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.8) | 1.3% | — | Phpoutsourcing Noahs Classifieds | 16/10/2006 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in index.php in PhpOutsourcing Noah's Classifieds 1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the frommethod parameter. | |
| Modificada | Media (6.4) | 1.6% | — | Phpoutsourcing Noahs Classifieds | 21/3/2006 | 16/6/2026 | Noah's Classifieds 1.3 and earlier allows remote attackers to obtain sensitive information via an invalid list parameter in the showdetails method to index.php, which reveals the path in an error message. | |
| Modificada | Media (6.8) | 1.4% | — | Phpoutsourcing Noahs Classifieds | 21/3/2006 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) method or (2) list parameter. | |
| Modificada | Alta (7.5) | 7.7% | — | Phpoutsourcing Noahs Classifieds | 24/2/2006 | 16/6/2026 | Multiple PHP remote file include vulnerabilities in gorum/gorumlib.php in Noah's Classifieds 1.3, when register_globals is enabled, allow remote attackers to include arbitrary PHP files via the (1) upperTemplate and (2) lowerTemplate parameters, as demonstrated using the lowerTemplate parameter to index.php. | |
| Modificada | Media (5) | 1.5% | — | Phpoutsourcing Noahs Classifieds | 24/2/2006 | 16/6/2026 | Noah's Classifieds 1.3 allows remote attackers to obtain the installation path via a direct request to include files, as demonstrated by classifieds/gorum/category.php. | |
| Modificada | Media (5) | 2.8% | — | Phpoutsourcing Noahs Classifieds | 24/2/2006 | 16/6/2026 | Directory traversal vulnerability in include.php in Noah's Classifieds 1.3 allows remote attackers to include arbitrary local files via the otherTemplate parameter to index.php. | |
| Modificada | Media (4.3) | 1.9% | — | Phpoutsourcing Noahs Classifieds | 24/2/2006 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 allow remote attackers to inject arbitrary web script or HTML via the (1) inf parameter; or, when register_globals is enabled, the (2) upperTemplate and (3) lowerTemplate parameters. | |
| Modificada | Alta (7.5) | 1.3% | — | Phpoutsourcing Noahs Classifieds | 24/2/2006 | 16/6/2026 | SQL injection vulnerability in the search tool in Noah's Classifieds 1.3 allows remote attackers to execute arbitrary SQL commands via unspecified attack vectors. | |
| Modificada | Alta (7.5) | 1.2% | — | Phpoutsourcing Noahs Classifieds | 20/9/2005 | 16/6/2026 | SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitrary SQL commands via the rollid parameter. | |
| Modificada | Media (4.3) | 1.8% | — | Phpoutsourcing Noahs Classifieds | 20/9/2005 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers to inject arbitrary web script or HTML via the rollid parameter. |