Vulnerabilities > Mykazaam

DATE CVE VULNERABILITY TITLE RISK
2011-11-01 CVE-2010-4985 Cross-Site Scripting vulnerability in Mykazaam Notes Management System
Cross-site scripting (XSS) vulnerability in notes.php in My Kazaam Notes Management System allows remote attackers to inject arbitrary web script or HTML via vectors involving the "Enter Reference Number Below" text box.
network
mykazaam CWE-79
4.3
2011-11-01 CVE-2010-4984 SQL Injection vulnerability in Mykazaam Notes Management System
SQL injection vulnerability in notes.php in My Kazaam Notes Management System allows remote attackers to execute arbitrary SQL commands via vectors involving the "Enter Reference Number Below" text box.
network
low complexity
mykazaam CWE-89
7.5
2011-11-01 CVE-2010-4982 SQL Injection vulnerability in Mykazaam Address & Contact Organizer
SQL injection vulnerability in address_book/contacts.php in My Kazaam Address & Contact Organizer allows remote attackers to execute arbitrary SQL commands via the var1 parameter.
network
low complexity
mykazaam CWE-89
7.5