← Back

Prozilla

prozilla

15 CVEs • 12 products

Products (12)

Click to collapse
Toggle
Hosting Index
hosting_index
Webring
webring
Reviews
reviews
Topsites
topsites
Top 100
top_100
Entertainers
entertainers
Forum
forum
Cheats
cheats

CVEs (15)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Prozilla
1Hosting Index
Apr 23, 2026
Feb 11, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL commands via the id parameter in a deadlink action, a different vector than CVE-2008-2083.
1Prozilla
1Hosting Index
Apr 23, 2026
May 5, 2008
N/A· v4
N/A· v3
6.8 MEDIUM· v2
SQL injection vulnerability in directory.php in Prozilla Hosting Index, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
1Prozilla
1Prozilla Freelancers
Apr 23, 2026
Apr 17, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in project.php in Prozilla Freelancers allows remote attackers to execute arbitrary SQL commands via the project parameter.
1Prozilla
1Cheats
Apr 23, 2026
Apr 17, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in view_reviews.php in Prozilla Cheat Script (aka Cheats) 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
1Prozilla
1Forum
Apr 23, 2026
Apr 15, 2008
N/A· v4
N/A· v3
6.8 MEDIUM· v2
SQL injection vulnerability in forum.php in Prozilla Forum allows remote attackers to execute arbitrary SQL commands via the forum parameter.
1Prozilla
1Entertainers
Apr 23, 2026
Apr 15, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in directory.php in Prozilla Entertainers 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: some of these details are obtained from third...Show more
SQL injection vulnerability in directory.php in Prozilla Entertainers 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: some of these details are obtained from third party information.Show less
1Prozilla
1Top 100
Apr 23, 2026
Apr 15, 2008
N/A· v4
N/A· v3
5.5 MEDIUM· v2
delete.php in Prozilla Top 100 1.2 allows remote authenticated users to delete statistics and accounts of arbitrary users via a modified s parameter.
1Prozilla
1Topsites
Apr 23, 2026
Apr 15, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
Prozilla Topsites 1.0 allows remote attackers to perform administrative actions via a direct request to (1) addu.php, (2) editu.php, and (3) uidx.php in siteadmin/.
1Prozilla
1Reviews
Apr 23, 2026
Apr 15, 2008
N/A· v4
N/A· v3
6.4 MEDIUM· v2
Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users via a modified UserID parameter in a direct request to siteadmin/DeleteUser.php.
1Prozilla
1Webring
Apr 23, 2026
Aug 15, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter.
1Prozilla
1Prozilla Pub Site Directory
Apr 23, 2026
Aug 8, 2007
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in directory.php in Prozilla Pub Site Directory allows remote attackers to execute arbitrary SQL commands via the cat parameter.
1Prozilla
1Prozilla Directory Script
Apr 23, 2026
Jul 17, 2007
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action to directory.php, and other unspecified vectors.
1Prozilla
1Prozilla Download Accelerator
Apr 16, 2026
Oct 5, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string...Show more
Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an <A> tag.Show less
1Prozilla
1Prozilla Download Accelerator
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the Location header.
1Prozilla
1Prozilla Download Accelerator
Apr 16, 2026
Jan 10, 2005
N/A· v4
N/A· v3
10.0 HIGH· v2
Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in ProZilla 1.3.6-r2 and earlier allow remote servers to execute arbitrary code via a long Location heade...Show more
Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in ProZilla 1.3.6-r2 and earlier allow remote servers to execute arbitrary code via a long Location header.Show less