Skip to main content

Vendor archive

nucleus_group CVEs

Beta · best-effort

5 CVEs tagged to vendor nucleus_group1 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2009-0929

Published Mar 17, 2009

Directory traversal vulnerability in the media manager in Nucleus CMS before 3.40 allows remote attackers to read arbitrary files via unknown vectors.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3136

Published Jun 22, 2006

Multiple PHP remote file inclusion vulnerabilities in Nucleus 3.23 allow remote attackers to execute arbitrary PHP code via a URL the DIR_LIBS parameter in (1) path/action.php, an…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2583

Published May 25, 2006

PHP remote file inclusion vulnerability in nucleus/libs/PLUGINADMIN.php in Nucleus 3.22 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-2056

Published Dec 31, 2004

SQL injection vulnerability in action.php in Nucleus CMS 3.01 allows remote attackers to execute arbitrary SQL statements via the itemid parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1