Vulnerabilities > Iscripts > Autohoster > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2013-12-20 | CVE-2013-7189 | SQL Injection vulnerability in Iscripts Autohoster 2.4 Multiple SQL injection vulnerabilities in iScripts AutoHoster, possibly 2.4, allow remote attackers to execute arbitrary SQL commands via the cmbdomain parameter to (1) checktransferstatus.php, (2) checktransferstatusbck.php, or (3) additionalsettings.php; or (4) invno parameter to payinvoiceothers.php. | 7.5 |