Skip to main content

Vendor/product archive

ttcms / ttforum CVEs

Beta · best-effort

4 CVEs tagged to ttcms / ttforum1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2007-1708

Published Mar 27, 2007

PHP remote file inclusion vulnerability in lib/db/ez_sql.php in ttCMS 4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the lib_path parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1458

Published Dec 31, 2003

SQL injection vulnerability in Profile.php in ttCMS 2.2 and ttForum allows remote attackers to execute arbitrary SQL commands via the member name.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1459

Published Dec 31, 2003

Multiple PHP remote file inclusion vulnerabilities in ttCMS 2.2 and ttForum allow remote attackers to execute arbitrary PHP code via the (1) template parameter in News.php or (2)…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0331

Published Jun 9, 2003

SQL injection vulnerability in ttForum allows remote attackers to execute arbitrary SQL and gain ttForum Administrator privileges via the Ignorelist-Textfield argument in the Pref…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1