Vulnerabilities > Infireal > Saturncms

DATE CVE VULNERABILITY TITLE RISK
2009-02-24 CVE-2008-6263 SQL Injection vulnerability in Infireal Saturncms
SQL injection vulnerability in lib/user/t_user.php in SaturnCMS allows remote attackers to execute arbitrary SQL commands via the username parameter to the _userLoggedIn function.
network
low complexity
infireal CWE-89
7.5
2009-02-24 CVE-2008-6262 SQL Injection vulnerability in Infireal Saturncms
SQL injection vulnerability in lib/url/meta_url.php in SaturnCMS allows remote attackers to execute arbitrary SQL commands via the URL to the translate function.
network
low complexity
infireal CWE-89
7.5