Known Vulnerabilities for products from W-agora
Listed below are 19 of the newest known vulnerabilities associated with the vendor "W-agora".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2010-4868 json | Cross-site scripting (XSS) vulnerability in search.php3 (aka search.php) in W-Agora 4.2.1 and earlier allows remote attackers... | Not Provided | 2011-10-05 | 2026-04-29 |
| CVE-2010-4867 json | Directory traversal vulnerability in search.php3 (aka search.php) in W-Agora 4.2.1 and earlier allows remote attackers to inc... | Not Provided | 2011-10-05 | 2026-04-29 |
| CVE-2008-1466 json | Multiple PHP remote file inclusion vulnerabilities in W-Agora 4.0 allow remote attackers to execute arbitrary PHP code via a ... | Not Provided | 2008-03-24 | 2026-04-23 |
| CVE-2007-6647 json | SQL injection vulnerability in index.php in w-Agora 4.2.1 and earlier allows remote attackers to execute arbitrary SQL comman... | Not Provided | 2008-01-04 | 2026-04-23 |
| CVE-2007-1607 json | search.php in w-Agora (Web-Agora) allows remote attackers to obtain potentially sensitive information via a ' (quote) value f... | Not Provided | 2007-03-22 | 2026-04-23 |
| CVE-2007-1606 json | Multiple cross-site scripting (XSS) vulnerabilities in w-Agora (Web-Agora) allow remote attackers to inject arbitrary web scr... | Not Provided | 2007-03-22 | 2026-04-23 |
| CVE-2007-1605 json | w-Agora (Web-Agora) allows remote attackers to obtain sensitive information via a request to rss.php with an invalid (1) site... | Not Provided | 2007-03-22 | 2026-04-23 |
| CVE-2007-1604 json | Multiple unrestricted file upload vulnerabilities in w-Agora (Web-Agora) allow remote attackers to upload and execute arbitra... | Not Provided | 2007-03-22 | 2026-04-23 |
| CVE-2007-0607 json | W-Agora (Web-Agora) 4.2.1, when register_globals is enabled, stores globals.inc under the web document root with insufficient... | Not Provided | 2007-03-20 | 2026-04-23 |
| CVE-2007-0606 json | w-agora 4.2.1 allows remote attackers to obtain sensitive information by via the (1) bn[] array parameter to index.php, which... | Not Provided | 2007-03-21 | 2026-04-23 |
| CVE-2006-2228 json | Cross-site scripting (XSS) vulnerability in w-Agora (aka Web-Agora) 4.2.0 allows remote attackers to inject arbitrary web scr... | Not Provided | 2006-05-05 | 2025-04-03 |
| CVE-2005-2648 json | Directory traversal vulnerability in index.php in W-Agora 4.2.0 and earlier allows remote attackers to read arbitrary files v... | Not Provided | 2005-08-23 | 2025-04-03 |
| CVE-2004-1565 json | list.php in w-Agora 4.1.6a allows remote attackers to reveal the full path via a crafted HTTP request, possibly involving a m... | Not Provided | 2004-12-31 | 2025-04-03 |
| CVE-2004-1564 json | CRLF injection vulnerability in subscribe_thread.php in w-Agora 4.1.6a allows remote attackers to perform HTTP Response Split... | Not Provided | 2004-12-31 | 2025-04-03 |
| CVE-2004-1563 json | Multiple cross-site scripting (XSS) vulnerabilities in w-Agora 4.1.6a allow remote attackers to execute arbitrary web script ... | Not Provided | 2004-12-31 | 2025-04-03 |
| CVE-2004-1562 json | SQL injection vulnerability in redir_url.php in w-Agora 4.1.6a allows remote attackers to execute arbitrary SQL commands via ... | Not Provided | 2004-12-31 | 2025-04-03 |
| CVE-2002-2129 json | Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web s... | Not Provided | 2002-12-31 | 2025-04-03 |
| CVE-2002-2128 json | editform.php in w-Agora 4.1.5 allows local users to execute arbitrary PHP code via .. (dot dot) sequences in the file paramet... | Not Provided | 2002-12-31 | 2025-04-03 |
| CVE-2002-1878 json | PHP remote file inclusion vulnerability in w-Agora 4.1.3 allows remote attackers to execute arbitrary PHP code via the inc_di... | Not Provided | 2002-12-31 | 2025-04-03 |