Vulnerabilities > Scriptme

DATE CVE VULNERABILITY TITLE RISK
2007-01-18 CVE-2007-0339 SQL-Injection vulnerability in Scriptme SME Filemailer 1.21
SQL injection vulnerability in index.php (aka the login form) in Scriptme SMe FileMailer 1.21 allows remote attackers to execute arbitrary SQL commands via the Password field (ps parameter).
network
low complexity
scriptme
7.5
2006-02-23 CVE-2006-0856 SQL Injection vulnerability in Scriptme SME GB Host 1.21
SQL injection vulnerability in login.php in Scriptme SmE GB Host 1.21 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the Username parameter.
network
low complexity
scriptme
7.5
2006-02-13 CVE-2006-0661 Unspecified vulnerability in Scriptme SME Blog Host and SME GB Host
Cross-site scripting (XSS) vulnerability in Scriptme SmE GB Host 1.21 and SmE Blog Host allows remote attackers to inject arbitrary web script or HTML via the BBcode url tag.
network
scriptme
4.3