Searching esyndicat software vulnerabilities


admin/cron.php in eSyndicat Directory 1.2, when


admin/cron.php in eSyndicat Directory 1.2, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include arbitrary files and possibly execute arbitrary PHP code via a null-terminated value in the path_to_config parameter.


manage-admins.php in eSyndiCat Pro 1.x allows r


manage-admins.php in eSyndiCat Pro 1.x allows remote attackers to create additional administrative accounts, and have other unspecified impact, via modified username, new_pass, new_pass2, status, super, and certain other parameters in an add action.


Multiple SQL injection vulnerabilities in eSynd


Multiple SQL injection vulnerabilities in eSyndiCat allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to news.php or (2) the name parameter to page.php.


Software vulnerabilities results 1 to 4 of 4     
Page: 1