Vulnerabilities > Resalecode > Hutscripts PHP Website Script

DATE CVE VULNERABILITY TITLE RISK
2009-07-24 CVE-2009-2590 SQL Injection vulnerability in Resalecode Hutscripts PHP Website Script
SQL injection vulnerability in showcategory.php in Hutscripts PHP Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
network
low complexity
resalecode CWE-89
7.5
2009-07-24 CVE-2009-2589 Cross-Site Scripting vulnerability in Resalecode Hutscripts PHP Website Script
Multiple cross-site scripting (XSS) vulnerabilities in Hutscripts PHP Website Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) index.php, and (3) lostpassword.php.
network
resalecode CWE-79
4.3