← Back

Marcin Manek

marcin_manek

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
D.net Cms
d.net_cms

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Marcin Manek
1D.net Cms
Apr 23, 2026
Oct 1, 2009
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Directory traversal vulnerability in dnet_admin/index.php in d.net CMS allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the type parameter.
1Marcin Manek
1D.net Cms
Apr 23, 2026
Oct 1, 2009
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Multiple SQL injection vulnerabilities in d.net CMS allow remote attackers to execute arbitrary SQL commands via (1) the page parameter to index.php; and allow remote authenticated administrators to execute arbitrary SQL...Show more
Multiple SQL injection vulnerabilities in d.net CMS allow remote attackers to execute arbitrary SQL commands via (1) the page parameter to index.php; and allow remote authenticated administrators to execute arbitrary SQL commands via the (2) edit_id and (3) _p parameter in a news action to dnet_admin/index.php.Show less