Vulnerabilities > Instantsoftwares

DATE CVE VULNERABILITY TITLE RISK
2008-01-08 CVE-2008-0131 Cross-Site Scripting vulnerability in Instantsoftwares Dating Site
Cross-site scripting (XSS) vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to inject arbitrary web script or HTML via the msg parameter, a different product than CVE-2006-6022.
4.3
2008-01-08 CVE-2008-0130 SQL Injection vulnerability in Instantsoftwares Dating Site
SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Username parameter, a different vulnerability than CVE-2007-6671.
network
low complexity
instantsoftwares CWE-89
7.5
2008-01-08 CVE-2007-6671 SQL Injection vulnerability in Instantsoftwares Dating Site
SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Password parameter, a different product than CVE-2006-6021.
network
low complexity
instantsoftwares CWE-89
7.5