Vulnerabilities > Scripts FOR Sites

DATE CVE VULNERABILITY TITLE RISK
2009-02-23 CVE-2008-6246 SQL Injection vulnerability in Scripts-For-Sites EZ Webring
SQL injection vulnerability in category.php in Scripts For Sites (SFS) EZ Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6245 SQL Injection vulnerability in Scripts-For-Sites EZ BIZ PRO
SQL injection vulnerability in track.php in Scripts For Sites (SFS) EZ BIZ PRO allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6244 SQL Injection vulnerability in Scripts-For-Sites EZ Gaming Cheats
SQL injection vulnerability in view_reviews.php in Scripts for Sites (SFS) EZ Gaming Cheats allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6243 SQL Injection vulnerability in Scripts FOR Sites EZ Hotscripts-Likesite
SQL injection vulnerability in showcategory.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the cid parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6242 SQL Injection vulnerability in Scripts-For-Sites EZ E-Store
SQL injection vulnerability in SearchResults.php in Scripts For Sites (SFS) EZ e-store allows remote attackers to execute arbitrary SQL commands via the where parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6237 SQL Injection vulnerability in Scripts-For-Sites Hotscripts-Like Site
SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-11 CVE-2009-0533 Cross-Site Scripting vulnerability in Scripts-For-Sites EZ Reminder
Cross-site scripting (XSS) vulnerability in password.php in Scripts for Sites EZ Reminder allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly involving the u2 parameter.
4.3
2009-02-11 CVE-2009-0532 Cross-Site Scripting vulnerability in Scripts-For-Sites EZ Baby
Cross-site scripting (XSS) vulnerability in password.php in Scripts For Sites (SFS) EZ Baby allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly involving the u2 parameter.
4.3
2008-10-27 CVE-2008-4754 SQL Injection vulnerability in Scripts-For-Sites EZ Forum
SQL injection vulnerability in forum.php in Scripts for Sites (SFS) Ez Forum allows remote attackers to execute arbitrary SQL commands via the forum parameter.
low complexity
scripts-for-sites CWE-89
5.8
2008-08-20 CVE-2008-3719 SQL Injection vulnerability in Scripts-For-Sites Affiliate Directory
SQL injection vulnerability in directory.php in SFS Affiliate Directory allows remote attackers to execute arbitrary SQL commands via the id parameter in a deadlink action.
network
low complexity
scripts-for-sites CWE-89
7.5