Vulnerabilities > Bwired

DATE CVE VULNERABILITY TITLE RISK
2007-07-25 CVE-2007-3978 Credentials Management vulnerability in Bwired
Session fixation vulnerability in bwired allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.
network
bwired CWE-255
4.3
2007-07-25 CVE-2007-3977 Cross-Site Scripting vulnerability in Bwired
Cross-site scripting (XSS) vulnerability in bwired allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
bwired CWE-79
4.3
2007-07-25 CVE-2007-3976 SQL-Injection vulnerability in Bwired
SQL injection vulnerability in index.php in bwired allows remote attackers to execute arbitrary SQL commands via the newsID parameter.
network
low complexity
bwired
7.5