← Back

Scottmanktelow

scottmanktelow

3 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Stride Cms
stride_cms
Stride
stride

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Scottmanktelow
1Stride Cms
Apr 23, 2026
Oct 12, 2007
N/A· v4
N/A· v3
7.5 HIGH· v2
Stride 1.0 has a default administrator username of "scott" with the password "running", which allows remote attackers to obtain administrative access through login.php.
2Javaatwork
Scottmanktelow
2Myftpuploader Module
Stride
Apr 23, 2026
Oct 12, 2007
N/A· v4
N/A· v3
7.8 HIGH· v2
include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login credentials, which might allow remote attackers to gain unauthorized access to the FTP server being used...Show more
include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login credentials, which might allow remote attackers to gain unauthorized access to the FTP server being used by the module by viewing the source code.Show less
1Scottmanktelow
1Stride Cms
Apr 23, 2026
Oct 12, 2007
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in Stride 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the p parameter to main.php in the Content Management System, (2) the id parameter in a sto cmd action...Show more
Multiple SQL injection vulnerabilities in Stride 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the p parameter to main.php in the Content Management System, (2) the id parameter in a sto cmd action to shop.php in the Merchant subsystem, or the (3) course or (4) provider parameter to detail.php in the Courses subsystem.Show less