Vulnerabilities > Cfmsource

DATE CVE VULNERABILITY TITLE RISK
2009-02-27 CVE-2008-6324 SQL Injection vulnerability in Cfmsource CF Forum
SQL injection vulnerability in forummessages.cfm in CF_Forum allows remote attackers to execute arbitrary SQL commands via the categorynbr parameter.
network
low complexity
cfmsource CWE-89
7.5
2009-02-27 CVE-2008-6323 SQL Injection vulnerability in Cfmsource CF Auction
SQL injection vulnerability in forummessages.cfm in CFMSource CF_Auction allows remote attackers to execute arbitrary SQL commands via the categorynbr parameter.
network
low complexity
cfmsource CWE-89
7.5
2009-02-27 CVE-2008-6322 SQL Injection vulnerability in Cfmsource Cfmblog
SQL injection vulnerability in index.cfm in CFMSource CFMBlog allows remote attackers to execute arbitrary SQL commands via the categorynbr parameter.
network
low complexity
cfmsource CWE-89
7.5
2009-02-27 CVE-2008-6319 SQL Injection vulnerability in Cfmsource CF Calendar
SQL injection vulnerability in calendarevent.cfm in CF_Calendar allows remote attackers to execute arbitrary SQL commands via the calid parameter.
network
low complexity
cfmsource CWE-89
7.5