Vulnerabilities > Spey

DATE CVE VULNERABILITY TITLE RISK
2007-06-20 CVE-2007-3298 SQL-Injection vulnerability in Spey
SQL injection vulnerability in Spey before 0.4.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to MessageProcessor.cc and possibly other components.
network
low complexity
spey
7.5
2005-12-31 CVE-2005-4847 Remote Security vulnerability in Spey 0.3.3
Unspecified vulnerability in Spey 0.3.3 has unknown impact and attack vectors related to "A number of security holes which could lead to compromise," a different issue than CVE-2005-4846.
network
low complexity
spey
critical
10.0
2005-12-31 CVE-2005-4846 Improper Input Validation vulnerability in Spey 0.3.3
Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in a syslog call.
network
spey CWE-20
4.3