Vulnerabilities > Iscripts > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-05-22 CVE-2018-11373 SQL Injection vulnerability in Iscripts Eswap 2.4
iScripts eSwap v2.4 has SQL injection via the "salelistdetailed.php" User Panel ToId parameter.
network
low complexity
iscripts CWE-89
critical
9.8
2018-05-22 CVE-2018-11372 SQL Injection vulnerability in Iscripts Eswap 2.4
iScripts eSwap v2.4 has SQL injection via the wishlistdetailed.php User Panel ToId parameter.
network
low complexity
iscripts CWE-89
critical
9.8