Vulnerabilities > Mywebsql

DATE CVE VULNERABILITY TITLE RISK
2019-02-11 CVE-2019-7731 Use of Incorrectly-Resolved Name or Reference vulnerability in Mywebsql 3.7
MyWebSQL 3.7 has a remote code execution (RCE) vulnerability after an attacker writes shell code into the database, and executes the Backup Database function with a .php filename for the backup's archive file.
network
low complexity
mywebsql CWE-706
critical
9.8
2019-02-11 CVE-2019-7730 Cross-Site Request Forgery (CSRF) vulnerability in Mywebsql 3.7
MyWebSQL 3.7 has a Cross-site request forgery (CSRF) vulnerability for deleting a database via the /?q=wrkfrm&type=databases URI.
network
low complexity
mywebsql CWE-352
5.7
2019-02-06 CVE-2019-7544 Cross-site Scripting vulnerability in Mywebsql
An issue was discovered in MyWebSQL 3.7.
network
low complexity
mywebsql CWE-79
5.4
2017-07-17 CVE-2017-1000011 Cross-site Scripting vulnerability in Mywebsql 3.6
MyWebSQL version 3.6 is vulnerable to stored XSS in the database manager component resulting in account takeover or stealing of information
network
low complexity
mywebsql CWE-79
6.1