Vulnerabilities (CVE)

Filtered by vendor Philex Subscribe
Filtered by product Philex
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-1698 1 Philex 1 Philex 2017-10-11 5.0 MEDIUM N/A
download.php in Philex 0.2.3 and earlier allows remote attackers to read arbitrary files and source code, and obtain sensitive information via the file parameter.
CVE-2007-1697 1 Philex 1 Philex 2017-10-11 10.0 HIGH N/A
PHP remote file inclusion vulnerability in header.inc.php in Philex 0.2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CssFile parameter.