Vulnerabilities > Torrenttrader > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2009-03-06 | CVE-2008-6418 | SQL Injection vulnerability in Torrenttrader SQL injection vulnerability in scrape.php in TorrentTrader before 2008-05-13 allows remote attackers to execute arbitrary SQL commands via the info_hash parameter. | 7.5 |
2008-10-09 | CVE-2008-4494 | SQL Injection vulnerability in Torrenttrader 1.04 SQL injection vulnerability in completed-advance.php in TorrentTrader Classic 1.08 and 1.04 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | 7.5 |
2007-10-09 | CVE-2007-5311 | Path Traversal vulnerability in Torrenttrader 1.07 Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic Edition 1.07 allows remote attackers to include and execute arbitrary local files via a .. | 7.5 |
2007-08-20 | CVE-2007-4435 | SQL Injection vulnerability in TorrentTrader Multiple SQL injection vulnerabilities in TorrentTrader before 1.07 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) account-inbox.php, (2) account-settings.php, and possibly (3) backend/functions.php. | 7.5 |