Skip to main content

Vendor archive

maian CVEs

Beta · best-effort

10 CVEs tagged to vendor maian1 Critical, 6 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2012-2405

Published Apr 22, 2012

Gallery 2 before 2.3.2 and 3 before 3.0.3 does not properly implement encryption, which has unspecified impact and attack vectors, a different vulnerability than CVE-2012-1113.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-1113

Published Apr 22, 2012

Multiple cross-site scripting (XSS) vulnerabilities in the administration subsystem in Gallery 2 before 2.3.2 and 3 before 3.0.3 allow remote attackers to inject arbitrary web scr…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3318

Published Jul 25, 2008

admin/index.php in Maian Weblog 4.0 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary weblog_cookie cookie.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3319

Published Jul 25, 2008

admin/index.php in Maian Links 3.1 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary links_cookie cookie.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3320

Published Jul 25, 2008

admin/index.php in Maian Guestbook 3.2 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary gbook_cookie cookie.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3322

Published Jul 25, 2008

admin/index.php in Maian Recipe 1.2 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary recipe_cookie cookie.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2076

Published Apr 18, 2007

PHP remote file inclusion vulnerability in index.php in Maian Gallery 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: t…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2077

Published Apr 18, 2007

PHP remote file inclusion vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: t…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2078

Published Apr 18, 2007

PHP remote file inclusion vulnerability in index.php in Maian Weblog 3.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: th…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1259

Published Mar 19, 2006

Multiple SQL injection vulnerabilities in Maian Support 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) email or (2) pass parameter to admin/index.php.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1