Vulnerabilities > Torrenttrader > High

DATE CVE VULNERABILITY TITLE RISK
2009-03-06 CVE-2008-6418 SQL Injection vulnerability in Torrenttrader
SQL injection vulnerability in scrape.php in TorrentTrader before 2008-05-13 allows remote attackers to execute arbitrary SQL commands via the info_hash parameter.
network
low complexity
torrenttrader CWE-89
7.5
2008-10-09 CVE-2008-4494 SQL Injection vulnerability in Torrenttrader 1.04
SQL injection vulnerability in completed-advance.php in TorrentTrader Classic 1.08 and 1.04 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
torrenttrader CWE-89
7.5
2007-10-09 CVE-2007-5311 Path Traversal vulnerability in Torrenttrader 1.07
Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic Edition 1.07 allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
torrenttrader CWE-22
7.5
2007-08-20 CVE-2007-4435 SQL Injection vulnerability in TorrentTrader
Multiple SQL injection vulnerabilities in TorrentTrader before 1.07 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) account-inbox.php, (2) account-settings.php, and possibly (3) backend/functions.php.
network
low complexity
torrenttrader
7.5