Vulnerabilities (CVE)

Filtered by vendor Phpvibe Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-39171 1 Phpvibe 1 Phpvibe 2024-07-12 N/A 9.8 CRITICAL
Directory Travel in PHPVibe v11.0.46 due to incomplete blacklist checksums and directory checks, which can lead to code execution via writing specific statements to .htaccess and code to a file with a .png suffix.
CVE-2015-5399 1 Phpvibe 1 Phpvibe 2016-08-29 3.5 LOW 5.4 MEDIUM
Cross-site scripting (XSS) vulnerability in PHPVibe before 4.21 allows remote authenticated users to inject arbitrary web script or HTML via a comment.