Vulnerabilities > PHP Link Directory

DATE CVE VULNERABILITY TITLE RISK
2009-07-07 CVE-2008-6851 SQL Injection vulnerability in PHP Link Directory PHP Link Directory 3.3
SQL injection vulnerability in page.php in PHP Link Directory (phpLD) 3.3, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the name parameter.
network
high complexity
php-link-directory CWE-89
5.1
2007-01-26 CVE-2007-0529 Cross-Site Scripting vulnerability in PHP Link Directory
Cross-site scripting (XSS) vulnerability in index.html (aka the administration page) in PHP Link Directory (phpLD) 3.0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted link, which is triggered when the administrator uses the "Validate Links" functionality.
4.3