Vulnerabilities > Openfreeway > Freeway > 1.3.2.154

DATE CVE VULNERABILITY TITLE RISK
2009-01-30 CVE-2008-6013 SQL Injection vulnerability in Openfreeway Freeway
Multiple SQL injection vulnerabilities in Freeway before 1.4.3.210 allow remote attackers to execute arbitrary SQL commands via unspecified vectors involving the (1) advanced search result and (2) service resource pages.
network
low complexity
openfreeway CWE-89
7.5
2008-08-14 CVE-2008-3677 Path Traversal vulnerability in Openfreeway Freeway
Directory traversal vulnerability in includes/events_application_top.php in Freeway before 1.4.2.197 allows remote attackers to include and execute arbitrary local files via unspecified vectors.
6.8