Vulnerabilities > Arcadwy

DATE CVE VULNERABILITY TITLE RISK
2009-04-02 CVE-2009-1229 SQL Injection vulnerability in Arcadwy Arcade Script
SQL injection vulnerability in Arcadwy Arcade Script allows remote attackers to execute arbitrary SQL commands via the user cookie parameter.
network
low complexity
arcadwy CWE-89
7.5
2009-04-02 CVE-2009-1228 Cross-Site Scripting vulnerability in Arcadwy Arcade Script CMS
Cross-site scripting (XSS) vulnerability in register.php in Arcadwy Arcade Script CMS allows remote attackers to inject arbitrary web script or HTML via the username field (user_name parameter).
network
arcadwy CWE-79
4.3