Vulnerabilities > Scripts FOR Sites > High

DATE CVE VULNERABILITY TITLE RISK
2009-07-14 CVE-2008-6867 SQL Injection vulnerability in Scripts FOR Sites EZ Career
SQL injection vulnerability in content.php in Scripts For Sites (SFS) EZ Career allows remote attackers to execute arbitrary SQL commands via the topic parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-12 CVE-2008-6808 SQL Injection vulnerability in Scripts-For-Sites EZ Link Directory
SQL injection vulnerability in links.php in Scripts for Sites (SFS) EZ Link Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-01 CVE-2008-6784 SQL Injection vulnerability in Scripts-For-Sites EZ Adult Directory
SQL injection vulnerability in directory.php in Scripts For Sites (SFS) EZ Adult Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-01 CVE-2008-6783 SQL Injection vulnerability in Scripts-For-Sites EZ Home Business Directory
SQL injection vulnerability in directory.php in Sites for Scripts (SFS) EZ Home Business Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-01 CVE-2008-6782 SQL Injection vulnerability in Scripts-For-Sites EZ Hosting Directory
SQL injection vulnerability in directory.php in Sites for Scripts (SFS) EZ Hosting Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-01 CVE-2008-6781 SQL Injection vulnerability in Scripts-For-Sites EZ Gaming Directory
SQL injection vulnerability in directory.php in Sites for Scripts (SFS) Gaming Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-01 CVE-2008-6780 SQL Injection vulnerability in Scripts-For-Sites EZ Affiliate
SQL injection vulnerability in directory.php in Scripts for Sites (SFS) SFS EZ Affiliate allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-01 CVE-2008-6778 SQL Injection vulnerability in Scripts-For-Sites EZ Auction
SQL injection vulnerability in viewfaqs.php in Scripts for Sites (SFS) EZ Auction allows remote attackers to execute arbitrary SQL commands via the cat parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-05-01 CVE-2008-6776 SQL Injection vulnerability in Scripts-For-Sites EZ HOT OR NOT
SQL injection vulnerability in viewcomments.php in Scripts For Sites (SFS) EZ Hot or Not allows remote attackers to execute arbitrary SQL commands via the phid parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6247 SQL Injection vulnerability in Scripts-For-Sites EZ TOP Sites
SQL injection vulnerability in topsite.php in Scripts For Sites (SFS) EZ Top Sites allows remote attackers to execute arbitrary SQL commands via the ts parameter.
network
low complexity
scripts-for-sites CWE-89
7.5