Vulnerabilities > Scriptsfrenzy

DATE CVE VULNERABILITY TITLE RISK
2008-11-14 CVE-2008-5075 SQL Injection vulnerability in Scriptsfrenzy E-Uploader PRO 1.0
Multiple SQL injection vulnerabilities in E-Uploader Pro 1.0 (aka Uploader PRO), when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) img.php, (b) file.php, (c) mail.php, (d) thumb.php, (e) zip.php, and (f) zipit.php, and (2) the view parameter to (g) browser.php.
6.8
2006-04-19 CVE-2006-1852 SQL-Injection vulnerability in Article Publisher Pro
SQL injection vulnerability in category.php in Article Publisher Pro 1.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cname parameter.
network
low complexity
scriptsfrenzy
7.5