Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: phpWebSite 0.x
This vulnerability report for phpWebSite 0.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in phpWebSite 0.x then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor N/A

Product Link View Here (Link to external site)

Affected By 14 Secunia advisories
10 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 14% (2 of 14 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting phpWebSite 0.x, with all vendor patches applied, is rated Moderately critical .




14 Secunia Advisories in 2003-2009
Secunia has issued a total of 14 Secunia advisories in 2003-2009 for phpWebSite 0.x. Currently, 14% (2 out of 14) are marked as unpatched with the most severe being rated Moderately critical

More information about the specific Secunia advisories affecting phpWebSite 0.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



phpWebSite "search" Cross-Site Scripting Vulnerability
Vendor Patch. Secunia Advisory 1 of 1 in 2008. 4,463 views.
Release Date:
2008-01-03
Secunia Advisory ID:
SA28303
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Audun Larsen has discovered a vulnerability in phpWebSite, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


phpWebSite "hub_dir" Local File Inclusion Vulnerability
Unpatched. Secunia Advisory 1 of 2 in 2006. 7,660 views.
Release Date:
2006-04-17
Secunia Advisory ID:
SA19647
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
rgod has reported a vulnerability in phpWebSite, which can be exploited by malicious people to disclose sensitive information and potentially compromise a vulnerable system. [Read More]


phpWebsite "sid" Parameter SQL Injection
Vendor Patch. Secunia Advisory 2 of 2 in 2006. 7,135 views.
Release Date:
2006-03-22
Secunia Advisory ID:
SA19315
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
Where:
From remote
Short Description:
DaBDouB-MoSiKaR has discovered a vulnerability in phpWebsite, which can be exploited by malicious people to conduct SQL injection attacks. [Read More]


phpWebSite PEAR XML_RPC Nested XML Tags PHP Code Execution
Vendor Patch. Secunia Advisory 1 of 5 in 2005. 7,149 views.
Release Date:
2005-09-01
Secunia Advisory ID:
SA16648
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in phpWebSite, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


phpWebSite "module" Parameter SQL Injection Vulnerability
Vendor Patch. Secunia Advisory 2 of 5 in 2005. 8,345 views.
Release Date:
2005-08-17
Secunia Advisory ID:
SA16471
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
Where:
From remote
Short Description:
matrix_killer has discovered a vulnerability in phpWebSite, which can be exploited by malicious people to conduct SQL injection attacks. [Read More]


phpWebSite PEAR XML_RPC PHP Code Execution
Vendor Patch. Secunia Advisory 3 of 5 in 2005. 9,006 views.
Release Date:
2005-07-11
Secunia Advisory ID:
SA16001
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in phpWebSite, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


phpWebSite SQL Injection and Disclosure of Sensitive Information
Vendor Patch. Secunia Advisory 4 of 5 in 2005. 8,131 views.
Release Date:
2005-07-08
Secunia Advisory ID:
SA15958
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Manipulation of data
Exposure of sensitive information
Where:
From remote
Short Description:
Diabolic Crab has reported some vulnerabilities in phpWebSite, which can be exploited by malicious people to conduct SQL injection attacks and disclose sensitive information. [Read More]


phpWebSite Announcement Image Upload Vulnerability
Vendor Patch. Secunia Advisory 5 of 5 in 2005. 15,149 views.
Release Date:
2005-02-25
Secunia Advisory ID:
SA14399
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
nst has reported a vulnerability in phpWebSite, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


phpWebSite HTTP Response Splitting Vulnerability
Vendor Patch. Secunia Advisory 1 of 3 in 2004. 8,708 views.
Release Date:
2004-11-12
Secunia Advisory ID:
SA13172
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Maestro De-Seguridad has reported a vulnerability in phpWebSite, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


phpWebSite Cross-Site Scripting and Script Insertion Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 3 in 2004. 7,890 views.
Release Date:
2004-09-03
Secunia Advisory ID:
SA12438
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Manipulation of data
Where:
From remote
Short Description:
James Bercegay has reported some vulnerabilities in phpWebSite, allowing malicious people to conduct cross-site scripting and script insertion attacks. [Read More]


phpWebSite SQL Injection Vulnerabilities
Vendor Patch. Secunia Advisory 3 of 3 in 2004. 9,259 views.
Release Date:
2004-02-16
Secunia Advisory ID:
SA10878
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
Exposure of system information
Exposure of sensitive information
Where:
From remote
Short Description:
David Sopas Ferreira has identified some vulnerabilities in phpWebSite, allowing malicious people to conduct SQL injection attacks. [Read More]


phpWebSite Cross Site Scripting and SQL Injection
Vendor Patch. Secunia Advisory 1 of 1 in 2003. 9,566 views.
Release Date:
2003-08-13
Secunia Advisory ID:
SA9517
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Exposure of sensitive information
Where:
From remote
Short Description:
Multiple vulnerabilities have been identified in phpWebSite allowing malicious people to conduct Cross Site Scripting and SQL injection. [Read More]


phpWebSite Cross Site Scripting
Unpatched. Secunia Advisory 1 of 2 in 2002. 4,534 views.
Release Date:
2002-10-03
Secunia Advisory ID:
SA7203
Solution Status:
Unpatched
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
It is possible to perform a simple Cross Site Scripting attack against sites running phpWebSite. [Read More]


Cross Site Scripting holes in Xoops, PHP-Nuke, NPDS, daCode, Drupal and phpWebSite
Partial Fix. Secunia Advisory 2 of 2 in 2002. 9,097 views.
Release Date:
2002-09-24
Secunia Advisory ID:
SA7153
Solution Status:
Partial Fix
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Multiple content management systems has been found to be vulnerable to injection of HTML code. [Read More]