Vulnerabilities > Homap

DATE CVE VULNERABILITY TITLE RISK
2009-04-21 CVE-2008-6740 Code Injection vulnerability in Homap 0.1
PHP remote file inclusion vulnerability in html/admin/modules/plugin_admin.php in HoMaP-CMS 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the _settings[pluginpath] parameter.
network
homap CWE-94
6.8
2008-07-02 CVE-2008-2989 SQL Injection vulnerability in Homap 0.1
SQL injection vulnerability in index.php in HoMaP-CMS 0.1 allows remote attackers to execute arbitrary SQL commands via the go parameter.
network
low complexity
homap CWE-89
7.5