Vulnerabilities > Simpcms

DATE CVE VULNERABILITY TITLE RISK
2007-09-18 CVE-2007-4953 SQL Injection vulnerability in Simpcms
SQL injection vulnerability in index.php in SimpCMS allows remote attackers to execute arbitrary SQL commands via the keyword parameter in a search site action.
network
low complexity
simpcms CWE-89
7.5
2007-04-12 CVE-2007-2009 Remote File Include vulnerability in Simpcms 20070410
PHP remote file inclusion vulnerability in index.php in SimpCMS Light 04.10.2007 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the site parameter.
network
simpcms
6.8