Vulnerabilities > E Xoopport > Samsara > 3.1

DATE CVE VULNERABILITY TITLE RISK
2011-10-09 CVE-2010-4942 SQL Injection vulnerability in E-Xoopport Samsara 3.0/3.1
SQL injection vulnerability in location.php in the eCal module in E-Xoopport Samsara 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the lid parameter.
network
low complexity
e-xoopport CWE-89
7.5
2010-09-17 CVE-2010-3467 SQL Injection vulnerability in E-Xoopport Samsara 3.0/3.1
SQL injection vulnerability in modules/sections/index.php in E-Xoopport Samsara 3.1 and earlier, when the Tutorial module is enabled, allows remote attackers to execute arbitrary SQL commands via the secid parameter in a listarticles action.
network
e-xoopport CWE-89
6.8