Skip to main content

Vendor/product archive

tilde / tilde_cms CVEs

Beta · best-effort

4 CVEs tagged to tilde / tilde_cms0 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2007-6159

Published Nov 29, 2007

SQL injection vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to execute arbitrary SQL commands via the aarstal parameter in a yeardetail action, a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-6160

Published Nov 29, 2007

Cross-site scripting (XSS) vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to inject arbitrary web script or HTML via the aarstal parameter in a ye…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6161

Published Nov 29, 2007

index.php in Tilde CMS 4.x and earlier allows remote attackers to obtain sensitive information via a certain search parameter value in a search action, which reveals the path.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1500

Published Mar 30, 2006

SQL injection vulnerability in index.php in Tilde CMS 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1