Vulnerabilities > Esmi

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0936 Cross-Site Scripting vulnerability in Esmi Paypal Storefront 1.7
Cross-site scripting vulnerability in products1h.php in ESMI PayPal Storefront allows remote attackers to inject arbitrary web script or HTML via the id parameter.
network
low complexity
esmi
5.0
2005-05-02 CVE-2005-0935 SQL Injection vulnerability in Esmi Paypal Storefront 1.7
Multiple SQL injection vulnerabilities in ESMI PayPal Storefront allow remote attackers to execute arbitrary SQL commands via the (1) idpages parameter to pages.php or the (2) id2 parameter to products1.php.
network
low complexity
esmi
7.5