Skip to main content

Vendor archive

torrenttrader CVEs

Beta · best-effort

15 CVEs tagged to vendor torrenttrader0 Critical, 4 High, 9 Medium, 2 Low, 0 Unrated.

CVE-2009-2161

Published Jun 22, 2009

Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic 1.09, when used on a case-insensitive web site, allows remote attackers to include and ex…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2160

Published Jun 22, 2009

TorrentTrader Classic 1.09 allows remote attackers to (1) obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function; and allows remote…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2159

Published Jun 22, 2009

backup-database.php in TorrentTrader Classic 1.09 does not require administrative authentication, which allows remote attackers to create and download a backup database by making…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2157

Published Jun 22, 2009

Multiple SQL injection vulnerabilities in TorrentTrader Classic 1.09 allow remote authenticated users to execute arbitrary SQL commands via (1) the origmsg parameter to account-in…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2156

Published Jun 22, 2009

Multiple cross-site scripting (XSS) vulnerabilities in TorrentTrader Classic 1.09 allow remote authenticated users to inject arbitrary web script or HTML via (1) the Title field t…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-6418

Published Mar 6, 2009

SQL injection vulnerability in scrape.php in TorrentTrader before 2008-05-13 allows remote attackers to execute arbitrary SQL commands via the info_hash parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-4494

Published Oct 9, 2008

SQL injection vulnerability in completed-advance.php in TorrentTrader Classic 1.08 and 1.04 and earlier allows remote attackers to execute arbitrary SQL commands via the id parame…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2428

Published Jun 18, 2008

Multiple SQL injection vulnerabilities in TorrentTrader 1.08 Classic allow remote attackers to execute arbitrary SQL commands via the (1) email or (2) wantusername parameter to ac…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5311

Published Oct 9, 2007

Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic Edition 1.07 allows remote attackers to include and execute arbitrary local files via a .…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-5312

Published Oct 9, 2007

Cross-site scripting (XSS) vulnerability in TorrentTrader Classic 1.07 allows remote attackers to inject arbitrary web script or HTML via the (1) color parameter to pjirc/css.php…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4831

Published Sep 12, 2007

Multiple cross-site scripting (XSS) vulnerabilities in account_settings.php in TorrentTrader 1.07 allow remote attackers to inject arbitrary web script or HTML via the (1) avatar…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2007-4536

Published Aug 25, 2007

TorrentTrader 1.07 and earlier sets insecure permissions for files in the root directory, which allows attackers to execute arbitrary PHP code by modifying (1) disclaimer.txt, (2)…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4435

Published Aug 20, 2007

Multiple SQL injection vulnerabilities in TorrentTrader before 1.07 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) account-inbox.php, (…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1