Sangwan Kim Bookmark4U vulnerabilities
3 known vulnerabilities affecting sangwan_kim/bookmark4u.
Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH3
Vulnerabilities
Page 1 of 1
CVE-2006-2877P3HIGHCVSS 7.5PoC≤ 2.02006-06-07
CVE-2006-2877 [HIGH] CVE-2006-2877: PHP remote file inclusion vulnerability in Bookmark4U 2.0.0 and earlier allows remote attackers to i
PHP remote file inclusion vulnerability in Bookmark4U 2.0.0 and earlier allows remote attackers to include arbitrary PHP files via the include_prefix parameter in (1) inc/dbase.php, (2) inc/config.php, (3) inc/common.php, and (4) inc/function.php. NOTE: it has been reported that the inc directory is protected by a .htaccess file, so this issue only applies in c
nvd
CVE-2006-7025P4HIGHCVSS 7.5≤ 2.12007-02-23
CVE-2006-7025 [HIGH] CWE-89 CVE-2006-7025: SQL injection vulnerability in admin/config.php in Bookmark4U 2.0 and 2.1 allows remote attackers to
SQL injection vulnerability in admin/config.php in Bookmark4U 2.0 and 2.1 allows remote attackers to inject arbitrary SQL command via the sqlcmd parameter.
nvd
CVE-2003-1253P4HIGHCVSS 7.5v1.8.32003-12-31
CVE-2003-1253 [HIGH] CWE-94 CVE-2003-1253: PHP remote file inclusion vulnerability in Bookmark4U 1.8.3 allows remote attackers to execute arbit
PHP remote file inclusion vulnerability in Bookmark4U 1.8.3 allows remote attackers to execute arbitrary PHP code viaa URL in the prefix parameter to (1) dbase.php, (2) config.php, or (3) common.load.php.
nvd