Vulnerabilities > Community CMS > Community CMS

DATE CVE VULNERABILITY TITLE RISK
2010-04-22 CVE-2009-4794 SQL Injection vulnerability in Community CMS Community CMS 0.5
Multiple SQL injection vulnerabilities in Community CMS 0.5 allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter to view.php and the (2) a parameter in an event action to calendar.php, reachable through index.php.
network
low complexity
community-cms CWE-89
7.5
2009-02-03 CVE-2009-0406 SQL Injection vulnerability in Community CMS Community CMS
SQL injection vulnerability in index.php in Community CMS 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
community-cms CWE-89
7.5