Osi Codes Inc Phplive vulnerabilities
2 known vulnerabilities affecting osi_codes_inc/phplive.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2008-0821P3HIGHCVSS 7.5PoCv3.2.22008-02-19
CVE-2008-0821 [HIGH] CWE-89 CVE-2008-0821: SQL injection vulnerability in admin/traffic/knowledge_searchm.php in OSI Codes Inc. PHP Live! 3.2.2
SQL injection vulnerability in admin/traffic/knowledge_searchm.php in OSI Codes Inc. PHP Live! 3.2.2 allows remote attackers to execute arbitrary SQL commands via the questid parameter in an expand_question action.
nvd
CVE-2007-3060P4MEDIUMCVSS 4.3PoCv3.2.22007-06-06
CVE-2007-3060 [MEDIUM] CVE-2007-3060: Multiple cross-site scripting (XSS) vulnerabilities in PHP Live! 3.2.2 allow remote attackers to inj
Multiple cross-site scripting (XSS) vulnerabilities in PHP Live! 3.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) sid parameter to (a) chat.php, (2) LANG[DEFAULT_BRANDING] and (3) PHPLIVE_VERSION parameters to (b) help.php, the (4) admin[name] parameter to (c) admin/header.php, and the (5) BASE_URL parameter to (d) super/info.ph
nvd