Vulnerabilities > Emusoft

DATE CVE VULNERABILITY TITLE RISK
2008-06-27 CVE-2008-2891 SQL Injection vulnerability in Emusoft Emucms 0.3
SQL injection vulnerability in index.php in eMuSOFT emuCMS 0.3 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a category action.
network
low complexity
emusoft CWE-89
7.5
2006-09-15 CVE-2006-4822 Cross-Site Scripting vulnerability in Emusoft EmuCMS
Multiple cross-site scripting (XSS) vulnerabilities in index.php in eMuSOFT emuCMS 0.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) query or (2) page parameters.
network
emusoft
4.3