Vulnerabilities > Fortibus

DATE CVE VULNERABILITY TITLE RISK
2005-06-21 CVE-2005-2037 SQL-Injection vulnerability in Fortibus CMS
Multiple SQL injection vulnerabilities in Fortibus CMS 4.0.0 allow remote attackers to execute arbitrary SQL commands via (1) the username or password to logon.asp, (2) WeeklyNotesDisplay.asp, or (3) the Search page.
network
low complexity
fortibus
7.5
2005-06-20 CVE-2005-2038 Remote Security vulnerability in Fortibus CMS 4.0.0
Fortibus CMS 4.0.0 allows remote attackers to modify information of other users, including Admin, via the "My info" page.
network
low complexity
fortibus
5.0