Vulnerabilities > Prozilla > Hosting Index

DATE CVE VULNERABILITY TITLE RISK
2009-02-11 CVE-2008-6115 SQL Injection vulnerability in Prozilla Hosting Index
SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL commands via the id parameter in a deadlink action, a different vector than CVE-2008-2083.
network
low complexity
prozilla CWE-89
7.5
2008-05-05 CVE-2008-2083 SQL Injection vulnerability in Prozilla Hosting Index
SQL injection vulnerability in directory.php in Prozilla Hosting Index, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
network
prozilla CWE-89
6.8