Vulnerabilities > Openautoclassifieds

DATE CVE VULNERABILITY TITLE RISK
2009-04-07 CVE-2008-6656 SQL Injection vulnerability in Openautoclassifieds Open Auto Classifieds 1.4.3B
Multiple SQL injection vulnerabilities in Open Auto Classifieds 1.4.3b allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to listings.php and (2) the username field to login.php.
network
low complexity
openautoclassifieds CWE-89
7.5
2003-11-03 CVE-2003-1145 Cross-Site Scripting vulnerability in OpenAutoClassifieds Listing Parameter
Cross-site scripting (XSS) vulnerability in friendmail.php in OpenAutoClassifieds 1.0 allows remote attackers to inject arbitrary web script or HTML via the listing parameter.
6.8