Vulnerabilities > 2Daybiz > WEB Template Software

DATE CVE VULNERABILITY TITLE RISK
2010-06-28 CVE-2010-2510 SQL Injection vulnerability in 2Daybiz web Template Software
SQL injection vulnerability in customize.php in 2daybiz Web Template Software allows remote attackers to execute arbitrary SQL commands via the tid parameter.
network
low complexity
2daybiz CWE-89
7.5
2010-06-28 CVE-2010-2509 Cross-Site Scripting vulnerability in 2Daybiz web Template Software
Multiple cross-site scripting (XSS) vulnerabilities in 2daybiz Web Template Software allow remote attackers to inject arbitrary web script or HTML via the (1) keyword parameter to category.php and the (2) password parameter to memberlogin.php.
network
2daybiz CWE-79
4.3