Filtered by vendor All Enthusiast Inc Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2004-2175 1 All Enthusiast Inc 1 Reviewpost Php Pro 2024-08-08 N/A
Multiple SQL injection vulnerabilities in ReviewPost PHP Pro allow remote attackers to execute arbitrary SQL commands via the (1) product parameter to showproduct.php or (2) cat parameter to showcat.php.
CVE-2006-4864 1 All Enthusiast Inc 1 Reviewpost Php Pro 2024-08-07 N/A
PHP remote file inclusion vulnerability in index.php in All Enthusiast ReviewPost 2.5 allows remote attackers to execute arbitrary PHP code via a URL in the RP_PATH parameter.