Vulnerabilities > Ocean12 Technologies > High

DATE CVE VULNERABILITY TITLE RISK
2009-01-27 CVE-2008-5978 SQL Injection vulnerability in Ocean12 Technologies Mailing List Manager NIL
Multiple SQL injection vulnerabilities in Ocean12 Mailing List Manager Gold allow remote attackers to execute arbitrary SQL commands via the Email parameter to (1) default.asp and (2) s_edit.asp.
network
low complexity
ocean12-technologies CWE-89
7.5
2005-12-31 CVE-2005-4657 Authentication Bypass vulnerability in Ocean12 Technologies Calendar Manager PRO 1.01
Ocean12 Calendar Manager Pro 1.01 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to /admin/view.asp.
network
low complexity
ocean12-technologies
7.5
2005-05-03 CVE-2005-1419 SQL-Injection vulnerability in Ocean12 Technologies Mailing List Manager 1.06
SQL injection vulnerability in the admin login panel for Ocean12 Mailing List Manager 1.06 allows remote attackers to execute arbitrary SQL commands via the Admin_id parameter.
network
low complexity
ocean12-technologies
7.5
2005-05-02 CVE-2005-1223 SQL-Injection vulnerability in Ocean12 Technologies Calendar Manager PRO 1.01
Multiple SQL injection vulnerabilities in Ocean12 Calendar manager 1.01 allow remote attackers to execute arbitrary SQL commands via the Admin_id field.
network
low complexity
ocean12-technologies
7.5
2005-04-06 CVE-2005-1096 SQL Injection vulnerability in Ocean12 Membership Manager Pro
SQL injection vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to execute arbitrary SQL commands via the UserID parameter.
network
low complexity
ocean12-technologies
7.5