Vulnerabilities > Iscripts > Easysnaps

DATE CVE VULNERABILITY TITLE RISK
2010-07-02 CVE-2010-2624 SQL Injection vulnerability in Iscripts Easysnaps 2.0
Multiple SQL injection vulnerabilities in iScripts EasySnaps 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) comment parameter to add_comments.php, (2) values parameter to tags_details.php, or (3) begin parameter to greetings.php.
network
low complexity
iscripts CWE-89
7.5