← Back

Php Fusion

php_fusion

85 CVEs • 11 products

Products (11)

Click to collapse
Toggle

CVEs (85)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Php Fusion
1Phpfusion
Nov 21, 2024
Jan 13, 2021
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
PHPFusion version 9.03.90 is vulnerable to CSRF attack which leads to deletion of all shoutbox messages by the attacker on behalf of the logged in victim.
1Php Fusion
1Php Fusion
Nov 21, 2024
Jan 3, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
login.php in PHPFusion (aka PHP-Fusion) Andromeda 9.x before 2020-12-30 generates error messages that distinguish between incorrect username and incorrect password (i.e., not a single "Incorrect username or password" mes...Show more
login.php in PHPFusion (aka PHP-Fusion) Andromeda 9.x before 2020-12-30 generates error messages that distinguish between incorrect username and incorrect password (i.e., not a single "Incorrect username or password" message in both cases), which might allow enumeration.Show less
1Php Fusion
1Php Fusion
Nov 21, 2024
Sep 3, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
Privilege escalation in PHP-Fusion 9.03.50 downloads/downloads.php allows an authenticated user (not admin) to send a crafted request to the server and perform remote command execution (RCE).
1Php Fusion
1Php Fusion
Nov 21, 2024
Aug 26, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php.
1Php Fusion
1Php Fusion
Nov 21, 2024
Aug 12, 2020
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
PHP-Fusion 9.03 allows XSS on the preview page.
1Php Fusion
1Php Fusion
Nov 21, 2024
Aug 12, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHP-Fusion 9.03 allows XSS via the error_log file.
1Php Fusion
1Php Fusion
Nov 21, 2024
Jun 24, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
PHP-Fusion 9.03.60 allows XSS via the administration/site_links.php Add Site Link field.
1Php Fusion
1Php Fusion
Nov 21, 2024
Jun 22, 2020
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection vulnerability in PHP-Fusion 9.03.50 affects the endpoint administration/comments.php via the ctype parameter,
1Php Fusion
1Php Fusion
Nov 21, 2024
May 8, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In administration/comments.php in PHP-Fusion 9.03.50, an authenticated attacker can take advantage of a stored XSS vulnerability in the Preview Comment feature. The protection mechanism can be bypassed by using HTML even...Show more
In administration/comments.php in PHP-Fusion 9.03.50, an authenticated attacker can take advantage of a stored XSS vulnerability in the Preview Comment feature. The protection mechanism can be bypassed by using HTML event handlers such as ontoggle.Show less
1Php Fusion
1Php Fusion
Nov 21, 2024
May 7, 2020
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Multiple cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the cat_id parameter to downloads/downloads.php or article.php. NOTE: this might overl...Show more
Multiple cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the cat_id parameter to downloads/downloads.php or article.php. NOTE: this might overlap CVE-2012-6043.Show less
1Php Fusion
1Php Fusion
Nov 21, 2024
May 7, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Multiple Cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the go parameter to faq/faq_admin.php or shoutbox_panel/shoutbox_admin.php
1Php Fusion
1Php Fusion
Nov 21, 2024
Apr 29, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
PHP-Fusion 9.03.50 allows SQL Injection because maincore.php has an insufficient protection mechanism. An attacker can develop a crafted payload that can be inserted into the sort_order GET parameter on the members.php m...Show more
PHP-Fusion 9.03.50 allows SQL Injection because maincore.php has an insufficient protection mechanism. An attacker can develop a crafted payload that can be inserted into the sort_order GET parameter on the members.php members search page. This parameter allows for control over anything after the ORDER BY clause in the SQL query.Show less
1Php Fusion
1Php Fusion
Nov 21, 2024
Apr 28, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
An XSS vulnerability exists in the banners.php page of PHP-Fusion 9.03.50. This can be exploited because the only security measure used against XSS is the stripping of SCRIPT tags. A malicious actor can use HTML event ha...Show more
An XSS vulnerability exists in the banners.php page of PHP-Fusion 9.03.50. This can be exploited because the only security measure used against XSS is the stripping of SCRIPT tags. A malicious actor can use HTML event handlers to run JavaScript instead of using SCRIPT tags.Show less
1Php Fusion
1Php Fusion
Nov 21, 2024
May 14, 2019
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dynamics/includes/form_fileinput.php and includes/classes/PHPFusion/Installer/Lib/Core.settings.inc mis...Show more
In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dynamics/includes/form_fileinput.php and includes/classes/PHPFusion/Installer/Lib/Core.settings.inc mishandle executable files during avatar upload.Show less
1Php Fusion
1Php Fusion
May 13, 2026
Sep 25, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Cross-site scripting (XSS) vulnerability in PHP-Fusion 9.
1Php Fusion
1Php Fusion
May 6, 2026
Nov 17, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in PHP-Fusion 7.02.07 allow remote authenticated users to execute arbitrary SQL commands via the (1) submit_id parameter in a 2 action to files/administration/submissions.php or (2)...Show more
Multiple SQL injection vulnerabilities in PHP-Fusion 7.02.07 allow remote authenticated users to execute arbitrary SQL commands via the (1) submit_id parameter in a 2 action to files/administration/submissions.php or (2) status parameter to files/administration/members.php.Show less
1Php Fusion
1Php Fusion
May 6, 2026
May 5, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in includes/classes/Authenticate.class.php in PHP-Fusion 7.02.01 through 7.02.05 allows remote attackers to execute arbitrary SQL commands via the user ID in a user cookie, a different vulnera...Show more
SQL injection vulnerability in includes/classes/Authenticate.class.php in PHP-Fusion 7.02.01 through 7.02.05 allows remote attackers to execute arbitrary SQL commands via the user ID in a user cookie, a different vulnerability than CVE-2013-1803.Show less
1Php Fusion
1Php Fusion
May 6, 2026
May 5, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in PHP-Fusion before 7.02.06 allow remote attackers to execute arbitrary SQL commands via the (1) orderby parameter to downloads.php; or remote authenticated users with certain perm...Show more
Multiple SQL injection vulnerabilities in PHP-Fusion before 7.02.06 allow remote attackers to execute arbitrary SQL commands via the (1) orderby parameter to downloads.php; or remote authenticated users with certain permissions to execute arbitrary SQL commands via a (2) parameter name starting with "delete_attach_" in an edit action to forum/postedit.php; the (3) poll_opts[] parameter in a newthread action to forum/postnewthread.php; the (4) pm_email_notify, (5) pm_save_sent, (6) pm_inbox, (7) pm_sentbox, or (8) pm_savebox parameter to administration/settings_messages.php; the (9) thumb_compression, (10) photo_watermark_text_color1, (11) photo_watermark_text_color2, or (12) photo_watermark_text_color3 parameter to administration/settings_photo.php; the (13) enable parameter to administration/bbcodes.php; the (14) news_image, (15) news_image_t1, or (16) news_image_t2 parameter to administration/news.php; the (17) news_id parameter in an edit action to administration/news.php; or the (18) article_id parameter in an edit action to administration/articles.php. NOTE: the user ID cookie issue in Authenticate.class.php is already covered by CVE-2013-7375.Show less
1Php Fusion
1Php Fusion
May 6, 2026
Apr 30, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information via a direct request t...Show more
PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information via a direct request to the backup file in administration/db_backups/.Show less
1Php Fusion
1Php Fusion
May 6, 2026
Apr 30, 2014
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Multiple directory traversal vulnerabilities in PHP-Fusion before 7.02.06 allow remote authenticated users to include and execute arbitrary files via a .. (dot dot) in the (1) user_theme parameter to maincore.php; or rem...Show more
Multiple directory traversal vulnerabilities in PHP-Fusion before 7.02.06 allow remote authenticated users to include and execute arbitrary files via a .. (dot dot) in the (1) user_theme parameter to maincore.php; or remote authenticated administrators to delete arbitrary files via the (2) enable parameter to administration/user_fields.php or (3) file parameter to administration/db_backup.php.Show less