Vulnerabilities > Freestyle

DATE CVE VULNERABILITY TITLE RISK
2010-04-26 CVE-2010-1529 SQL Injection vulnerability in Freestyle Faqs Lite 1.3
SQL injection vulnerability in the Freestyle FAQs Lite (com_fsf) component, possibly 1.3, for Joomla! allows remote attackers to execute arbitrary SQL commands via the faqid parameter in an faq action to index.php.
network
low complexity
freestyle joomla CWE-89
7.5
2006-12-31 CVE-2006-6889 Information Disclosure vulnerability in Freestyle Wiki
FreeStyle Wiki (fswiki) 3.6.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request for config/user.dat.
network
low complexity
freestyle
7.5
2005-05-31 CVE-2005-1799 HTML Injection vulnerability in Freestyle Wiki and Wikilite
Cross-site scripting (XSS) vulnerability in FreeStyle Wiki 3.5.7 and WikiLite (FSWikiLite) .10 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
network
freestyle
4.3