Vulnerabilities > Netart Media

DATE CVE VULNERABILITY TITLE RISK
2009-02-11 CVE-2008-6111 SQL Injection vulnerability in Netart Media Vlog System 1.1
SQL injection vulnerability in blog.php in NetArt Media Vlog System 1.1 allows remote attackers to execute arbitrary SQL commands via the note parameter.
network
low complexity
netart-media CWE-89
7.5
2008-12-02 CVE-2008-5311 SQL Injection vulnerability in Netart Media Blog System 1.5
SQL injection vulnerability in image.php in NetArt Media Blog System 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
netart-media CWE-89
7.5
2008-12-02 CVE-2008-5310 SQL Injection vulnerability in Netart Media CAR Portal 2.0
SQL injection vulnerability in image.php in NetArt Media Car Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
netart-media CWE-89
7.5
2008-12-02 CVE-2008-5309 SQL Injection vulnerability in Netart Media Real Estate Portal 1.2
SQL injection vulnerability in NetArt Media Real Estate Portal 1.2 allows remote attackers to execute arbitrary SQL commands via the ad_id parameter in the re_send_email module to index.php.
network
low complexity
netart-media CWE-89
7.5
2007-07-25 CVE-2007-3979 SQL Injection vulnerability in BlogSite Professional
SQL injection vulnerability in index.php in BlogSite Professional (aka Blog System) 1.x allows remote attackers to execute arbitrary SQL commands via the news_id parameter.
network
netart-media
6.8
2007-06-27 CVE-2007-3434 Information Disclosure vulnerability in Pharmacy System
index.php in Pharmacy System 2 and earlier allows remote attackers to obtain sensitive information via a ' (quote) character in the page parameter, which reveals the table prefix in an error message.
network
low complexity
netart-media
5.0
2007-06-27 CVE-2007-3433 SQL Injection vulnerability in Pharmacy System
SQL injection vulnerability in index.php in Pharmacy System 2 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter in an add action.
network
low complexity
netart-media
7.5
2005-12-07 CVE-2005-4049 Unspecified vulnerability in Netart Media Blog System 1.2
Multiple SQL injection vulnerabilities in Blog System 1.2 allow remote attackers to execute arbitrary SQL commands via (1) the cat parameter in index.php and (2) the note parameter in blog.php.
network
low complexity
netart-media
7.5