aewebworks aedating CVE Vulnerabilities (5)

CVEs: 5 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting aewebworks aedating (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2006-4870 Multiple PHP remote file inclusion vulnerabilities in AEDating 4.1, and possibly earlier versions, allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) inc/design.inc.php or (2) inc/admin_design.inc.php. [email protected] 7.5 10.05% 2006-09-19 2026-04-16
CVE-2006-3279 Cross-site scripting (XSS) vulnerability in aeDating 4.1 allows remote attackers to inject arbitrary web script or HTML via the (1) Sex parameter in index.php, (2) ProfileType parameter in join_form.php, and (3) Email parameter in forgot.php. [email protected] 4.3 0.51% 2006-06-28 2026-04-16
CVE-2005-2985 SQL injection vulnerability in search_result.php in AEwebworks aeDating Script 4.0 and earlier allows remote attackers to execute arbitrary SQL statements via the Country parameter. [email protected] 7.5 0.60% 2005-09-20 2026-04-16
CVE-2005-1084 SQL injection vulnerability in sdating.php in aeDating 3.2 allows remote attackers to execute arbitrary SQL commands files via the event parameter. [email protected] 7.5 0.40% 2005-05-02 2026-04-16
CVE-2005-1083 index.php in aeDating 3.2 allows remote attackers to include arbitrary files via the skin parameter. [email protected] 5.0 0.34% 2005-05-02 2026-04-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence