← Back

Basic Php Events Lister

basic-php-events-lister

Vendor: Mevin • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mevin
1Basic Php Events Lister
Apr 23, 2026
Sep 11, 2009
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
Mevin Productions Basic PHP Events Lister 2.0 does not properly restrict access to (1) admin/reset.php and (2) admin/user_add.php, which allows remote authenticated users to reset administrative passwords or add administ...Show more
Mevin Productions Basic PHP Events Lister 2.0 does not properly restrict access to (1) admin/reset.php and (2) admin/user_add.php, which allows remote authenticated users to reset administrative passwords or add administrators via a direct request.Show less
1Mevin
1Basic Php Events Lister
Apr 23, 2026
Mar 13, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in event.php in Mevin Productions Basic PHP Events Lister 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.