Myiosoft Ajaxportal vulnerabilities
2 known vulnerabilities affecting myiosoft/ajaxportal.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2009-1509P3HIGHCVSS 7.5PoCv3.02009-05-01
CVE-2009-1509 [HIGH] CWE-89 CVE-2009-1509: SQL injection vulnerability in ajaxp_backend.php in MyioSoft AjaxPortal 3.0 allows remote attackers
SQL injection vulnerability in ajaxp_backend.php in MyioSoft AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
nvd
CVE-2009-2262P4HIGHCVSS 7.5v3.02009-06-30
CVE-2009-2262 [HIGH] CWE-94 CVE-2009-2262: PHP remote file inclusion vulnerability in install/di.php in AjaxPortal 3.0 allows remote attackers
PHP remote file inclusion vulnerability in install/di.php in AjaxPortal 3.0 allows remote attackers to execute arbitrary PHP code via a URL in the pathtoserverdata parameter. NOTE: the installation instructions specify deleting the install/ folder.
nvd