Vulnerabilities > Powie > Psys

DATE CVE VULNERABILITY TITLE RISK
2008-11-28 CVE-2008-5269 SQL Injection vulnerability in Powie Psys 0.7.0
SQL injection vulnerability in index.php in pSys 0.7.0 alpha allows remote attackers to execute arbitrary SQL commands via the shownews parameter.
network
low complexity
powie CWE-89
7.5
2008-07-10 CVE-2008-3131 SQL Injection vulnerability in Powie Psys 0.7.0
SQL injection vulnerability in chatbox.php in pSys 0.7.0 Alpha, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the showid parameter.
network
powie CWE-89
6.8