Vulnerabilities > Aspindir > Husrevforum > 1.0.1

DATE CVE VULNERABILITY TITLE RISK
2007-07-18 CVE-2007-3885 Unspecified vulnerability in Aspindir Husrevforum 1.0.1
Cross-site scripting (XSS) vulnerability in philboard_search.asp in husrevforum 1.0.1 allows remote attackers to inject arbitrary web script or HTML via the searchterms parameter.
network
aspindir
4.3
2007-07-18 CVE-2007-3884 SQL Injection vulnerability in Aspindir Husrevforum 1.0.1/2.0.1
SQL injection vulnerability in philboard_forum.asp in husrevforum 1.0.1 allows remote attackers to execute arbitrary SQL commands via the forumid parameter.
network
low complexity
aspindir CWE-89
7.5