Vulnerabilities > Mydms
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2004-08-20 | CVE-2004-1733 | SQL Injection Vulnerability And Directory Traversal vulnerability in Mydms 1.4/1.4.1/1.4.2 Directory traversal vulnerability in MyDMS 1.4.2 and other versions allows remote registered users to read arbitrary files via .. | 5.0 |
2004-08-20 | CVE-2004-1732 | SQL Injection Vulnerability And Directory Traversal vulnerability in Mydms 1.4/1.4.1 SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers to execute arbitrary SQL commands via the folderid parameter. | 7.5 |