Vulnerabilities > Softbiz > Dating Script > High

DATE CVE VULNERABILITY TITLE RISK
2009-08-17 CVE-2009-2790 SQL Injection vulnerability in Softbiz Dating Script
SQL injection vulnerability in cat_products.php in SoftBiz Dating Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
network
low complexity
softbiz CWE-89
7.5
2006-06-28 CVE-2006-3271 SQL Injection vulnerability in Softbiz Dating Script 1.0
Multiple SQL injection vulnerabilities in Softbiz Dating 1.0 allow remote attackers to execute SQL commands via the (1) country and (2) sort_by parameters in (a) search_results.php; (3) browse parameter in (b) featured_photos.php; (4) cid parameter in (c) products.php, (d) index.php, and (e) news_desc.php.
network
low complexity
softbiz
7.5