Kalptaru Infotech Stararticles vulnerabilities
2 known vulnerabilities affecting kalptaru_infotech/stararticles.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2008-7075P3HIGHCVSS 7.5PoCv6.02009-08-25
CVE-2008-7075 [HIGH] CWE-89 CVE-2008-7075: Multiple SQL injection vulnerabilities in Kalptaru Infotech Ltd. Star Articles 6.0 allow remote atta
Multiple SQL injection vulnerabilities in Kalptaru Infotech Ltd. Star Articles 6.0 allow remote attackers to inject arbitrary SQL commands via (1) the subcatid parameter to article.list.php; or the artid parameter to (2) article.print.php, (3) article.comments.php, (4) article.publisher.php, or (5) article.download.php; and (6) the PATH_INFO to article.d
nvd
CVE-2008-7076P3MEDIUMCVSS 6.5PoCv6.02009-08-25
CVE-2008-7076 [MEDIUM] CWE-264 CVE-2008-7076: Unrestricted file upload vulnerability in user.modify.profile.php in Kalptaru Infotech Ltd. Star Art
Unrestricted file upload vulnerability in user.modify.profile.php in Kalptaru Infotech Ltd. Star Articles 6.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a profile photo, then accessing it via a direct request to the file in authorphoto/.
nvd