Skip to main content

Vendor/product archive

maianscriptworld / maian_uploader CVEs

Beta · best-effort

4 CVEs tagged to maianscriptworld / maian_uploader0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2014-10006

Published Jan 13, 2015

Multiple cross-site request forgery (CSRF) vulnerabilities in Maian Uploader 4.0 allow remote attackers to hijack the authentication of unspecified users for requests that conduct…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-10005

Published Jan 13, 2015

Maian Uploader 4.0 allows remote attackers to obtain sensitive information via a request without the height parameter to load_flv.js.php, which reveals the installation path in an…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-10004

Published Jan 13, 2015

SQL injection vulnerability in admin/data_files/move.php in Maian Uploader 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2202

Published May 14, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Maian Uploader 4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter to upload/ad…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1