← Back

Redaxscript

redaxscript

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Redaxscript
redaxscript

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Redaxscript
1Redaxscript
May 6, 2026
Feb 11, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the search_post function in includes/search.php in Redaxscript before 2.3.0 allows remote attackers to execute arbitrary SQL commands via the search_terms parameter.
1Redaxscript
1Redaxscript
May 6, 2026
Jan 1, 2015
N/A· v4
N/A· v3
5.0 MEDIUM· v2
templates/default/index.php in Redaxscript 0.3.2 allows remote attackers to obtain sensitive information via a direct request, which reveals the full path in an error message.
1Redaxscript
1Redaxscript
May 6, 2026
Jan 1, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in includes/password.php in Redaxscript 0.3.2 allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) password parameter to the password_reset program.