Vulnerabilities > Geekhelps

DATE CVE VULNERABILITY TITLE RISK
2010-03-16 CVE-2010-0968 SQL Injection vulnerability in Geekhelps Admp 1.01
SQL injection vulnerability in bannershow.php in Geekhelps ADMP 1.01 allows remote attackers to execute arbitrary SQL commands via the click parameter.
network
low complexity
geekhelps CWE-89
7.5
2010-03-16 CVE-2010-0967 Path Traversal vulnerability in Geekhelps Admp 1.01
Multiple directory traversal vulnerabilities in Geekhelps ADMP 1.01, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the style parameter to (1) colorvoid/footer.php, (2) default-green/footer.php, (3) default-orange/footer.php, and (4) default/footer.php in themes/.
network
high complexity
geekhelps CWE-22
5.1