Vulnerabilities > Oneorzero

DATE CVE VULNERABILITY TITLE RISK
2006-03-30 CVE-2006-1501 SQL Injection vulnerability in Oneorzero 1.6.3.0
SQL injection vulnerability in index.php in OneOrZero 1.6.3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly in the kans action.
network
low complexity
oneorzero CWE-89
7.5
2003-06-09 CVE-2003-0304 Remote Security vulnerability in Oneorzero Helpdesk 1.4Rc4
one||zero (aka One or Zero) Helpdesk 1.4 rc4 allows remote attackers to create administrator accounts by directly calling the install.php Helpdesk Installation script.
network
low complexity
oneorzero
critical
10.0
2003-06-09 CVE-2003-0303 SQL Injection vulnerability in Oneorzero Helpdesk 1.4Rc4
SQL injection vulnerability in one||zero (aka One or Zero) Helpdesk 1.4 rc4 allows remote attackers to modify arbitrary ticket number descriptions via the sg parameter.
network
low complexity
oneorzero
5.0