Skip to main content

Vendor/product archive

xlinesoft / phprunner CVEs

Beta · best-effort

3 CVEs tagged to xlinesoft / phprunner0 Critical, 2 High, 0 Medium, 1 Low, 0 Unrated.

CVE-2009-0964

Published Mar 19, 2009

UserView_list.php in PHPRunner 4.2, and possibly earlier, stores passwords in cleartext in the database, which allows attackers to gain privileges. NOTE: this can be leveraged wi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-0963

Published Mar 19, 2009

Multiple SQL injection vulnerabilities in PHPRunner 4.2, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the SearchField parameter to (1) UserVi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5956

Published Nov 17, 2006

XLineSoft PHPRunner 3.1 stores the (1) database server name, (2) database names, (3) usernames, and (4) passwords in plaintext in %WINDIR%\PHPRunner.ini, which allows local users…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1