Skip to main content

Vendor archive

archangelmgt CVEs

Beta · best-effort

5 CVEs tagged to vendor archangelmgt0 Critical, 2 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2008-2356

Published May 20, 2008

SQL injection vulnerability in index.php in Archangel Weblog 0.90.02 and earlier allows remote attackers to execute arbitrary SQL commands via the post_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2574

Published May 9, 2007

Directory traversal vulnerability in index.php in Archangel Weblog 0.90.02 allows remote attackers to read arbitrary files via a .. (dot dot) in the index parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4091

Published Aug 11, 2006

Multiple cross-site scripting (XSS) vulnerabilities in Archangel Management Archangel Weblog 0.90.02 allow remote attackers to inject arbitrary web script or HTML via the (1) Name…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0944

Published Mar 1, 2006

Archangel Weblog 0.90.02 allows remote attackers to bypass authentication by setting the ba_admin cookie to 1.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-0945

Published Mar 1, 2006

PHP remote file include vulnerability in admin/index.php in Archangel Weblog 0.90.02 allows remote authenticated administrators to execute arbitrary PHP code via a URL ending in a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1