Vulnerabilities > Dev4U

DATE CVE VULNERABILITY TITLE RISK
2010-03-10 CVE-2010-0951 SQL Injection vulnerability in Dev4U CMS
SQL injection vulnerability in go_target.php in dev4u CMS allows remote attackers to execute arbitrary SQL commands via the kontent_id parameter.
network
low complexity
dev4u CWE-89
7.5
2006-12-01 CVE-2006-6219 Input Validation vulnerability in Dev4U CMS
Multiple cross-site scripting (XSS) vulnerabilities in index.php in dev4u CMS allow remote attackers to inject arbitrary web script or HTML via the (1) user_name, (2) passwort, and (3) go_target parameters.
network
dev4u
6.8
2006-12-01 CVE-2006-6218 Input Validation vulnerability in Dev4U CMS
Multiple SQL injection vulnerabilities in index.php in dev4u CMS allow remote attackers to execute arbitrary SQL commands via the (1) seite_id, (2) gruppe_id.php, and (3) go_target parameters.
network
low complexity
dev4u
7.5