Vulnerabilities > Commodityrentals

DATE CVE VULNERABILITY TITLE RISK
2011-03-23 CVE-2010-4770 SQL Injection vulnerability in Commodityrentals DVD Rentals Script
SQL injection vulnerability in index.php in CommodityRentals DVD Rentals Script allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a catalog action.
network
low complexity
commodityrentals CWE-89
7.5
2010-03-02 CVE-2010-0763 SQL Injection vulnerability in Commodityrentals Vacation Rental Software
SQL injection vulnerability in index.php in CommodityRentals Vacation Rental Software allows remote attackers to execute arbitrary SQL commands via the rental_id parameter in a CalendarView action.
network
low complexity
commodityrentals CWE-89
7.5
2010-02-23 CVE-2010-0693 SQL Injection vulnerability in Commodityrentals Trade Manager Script
SQL injection vulnerability in products.php in CommodityRentals Trade Manager Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
network
low complexity
commodityrentals CWE-89
7.5
2010-02-23 CVE-2010-0690 SQL Injection vulnerability in Commodityrentals Video Games Rentals
SQL injection vulnerability in index.php in CommodityRentals Video Games Rentals allows remote attackers to execute arbitrary SQL commands via the pfid parameter in a catalog action.
network
low complexity
commodityrentals CWE-89
7.5
2005-11-30 CVE-2005-3917 SQL-Injection vulnerability in Commodityrentals 2.0
SQL injection vulnerability in usersession in CommodityRentals 2.0 Online Rental Business Creator script allows remote attackers to execute arbitrary SQL commands via the user_id parameter.
network
low complexity
commodityrentals
7.5