← Back

Ninjadesigns

ninjadesigns

4 CVEs • 3 products

Products (3)

Click to collapse
Toggle
Mailist
mailist
Ninja Blog
ninja_blog
Flatchat
flatchat

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ninjadesigns
1Flatchat
Apr 23, 2026
Apr 29, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
Directory traversal vulnerability in pmscript.php in Flatchat 3.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the with parameter.
1Ninjadesigns
1Mailist
Apr 23, 2026
Feb 13, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
admin.php in Ninja Designs Mailist 3.0 stores backup copies of maillist.php under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to the b...Show more
admin.php in Ninja Designs Mailist 3.0 stores backup copies of maillist.php under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to the backup directory.Show less
1Ninjadesigns
1Mailist
Apr 23, 2026
Feb 13, 2009
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Directory traversal vulnerability in send.php in Ninja Designs Mailist 3.0, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .....Show more
Directory traversal vulnerability in send.php in Ninja Designs Mailist 3.0, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the load parameter. NOTE: some of these details are obtained from third party information.Show less
1Ninjadesigns
1Ninja Blog
Apr 23, 2026
Jan 29, 2009
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Directory traversal vulnerability in entries/index.php in Ninja Blog 4.8, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the cat parameter.