This page lists publicly disclosed CVE vulnerabilities affecting scriptsez ez_ringtone_manager (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2008-6112 | Multiple directory traversal vulnerabilities in Ez Ringtone Manager allow remote attackers to read arbitrary files via a .. (dot dot) in the id parameter in a detail action to (1) main.php and (2) template.php in ringtones/. | [email protected] | 5.0 | 3.02% | 2009-02-11 | 2026-04-23 |
| CVE-2006-3004 | Multiple cross-site scripting (XSS) vulnerabilities in Ez Ringtone Manager allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in player.php and (2) keyword parameter when performing a search. | [email protected] | 4.3 | 1.54% | 2006-06-13 | 2026-04-16 |