Vulnerabilities > Scripts FOR Sites > High

DATE CVE VULNERABILITY TITLE RISK
2009-02-23 CVE-2008-6246 SQL Injection vulnerability in Scripts-For-Sites EZ Webring
SQL injection vulnerability in category.php in Scripts For Sites (SFS) EZ Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6245 SQL Injection vulnerability in Scripts-For-Sites EZ BIZ PRO
SQL injection vulnerability in track.php in Scripts For Sites (SFS) EZ BIZ PRO allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6244 SQL Injection vulnerability in Scripts-For-Sites EZ Gaming Cheats
SQL injection vulnerability in view_reviews.php in Scripts for Sites (SFS) EZ Gaming Cheats allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6243 SQL Injection vulnerability in Scripts FOR Sites EZ Hotscripts-Likesite
SQL injection vulnerability in showcategory.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the cid parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6242 SQL Injection vulnerability in Scripts-For-Sites EZ E-Store
SQL injection vulnerability in SearchResults.php in Scripts For Sites (SFS) EZ e-store allows remote attackers to execute arbitrary SQL commands via the where parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2009-02-23 CVE-2008-6237 SQL Injection vulnerability in Scripts-For-Sites Hotscripts-Like Site
SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
scripts-for-sites CWE-89
7.5
2008-08-20 CVE-2008-3719 SQL Injection vulnerability in Scripts-For-Sites Affiliate Directory
SQL injection vulnerability in directory.php in SFS Affiliate Directory allows remote attackers to execute arbitrary SQL commands via the id parameter in a deadlink action.
network
low complexity
scripts-for-sites CWE-89
7.5