Forum One Syntaxcms vulnerabilities
3 known vulnerabilities affecting forum_one/syntaxcms.
Total CVEs
3
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2006-5055P3HIGHCVSS 7.5PoC≤ 1.3v1.1.1+2 more2006-09-28
CVE-2006-5055 [HIGH] CWE-94 CVE-2006-5055: PHP remote file inclusion vulnerability in admin/testing/tests/0004_init_urls.php in syntaxCMS 1.1.1
PHP remote file inclusion vulnerability in admin/testing/tests/0004_init_urls.php in syntaxCMS 1.1.1 through 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the init_path parameter.
nvd
CVE-2005-4496P4MEDIUMCVSS 4.3PoC≤ 1.2.12005-12-22
CVE-2005-4496 [MEDIUM] CVE-2005-4496: Cross-site scripting (XSS) vulnerability in search in SyntaxCMS 1.2.1 and earlier allows remote atta
Cross-site scripting (XSS) vulnerability in search in SyntaxCMS 1.2.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search_query parameter.
nvd
CVE-2006-5105P4HIGHCVSS 7.5v1.1.1v1.2.1+1 more2006-10-03
CVE-2006-5105 [HIGH] CVE-2006-5105: Multiple PHP remote file inclusion vulnerabilities in SyntaxCMS 1.1.1 through 1.3 allow remote attac
Multiple PHP remote file inclusion vulnerabilities in SyntaxCMS 1.1.1 through 1.3 allow remote attackers to execute arbitrary PHP code via a URL in (1) the init_path parameter to admin/testing/tests/0030_init_syntax.php, or (2) an unspecified parameter to admin/testing/index.php. NOTE: the 0004_init_urls.php vector is already covered by CVE-2006-5055.
nvd