Vulnerabilities > Turnkeyforms > Text Link Sales

DATE CVE VULNERABILITY TITLE RISK
2009-08-13 CVE-2008-6963 Permissions, Privileges, and Access Controls vulnerability in Turnkeyforms Text Link Sales
admin.php in TurnkeyForms Text Link Sales allows remote attackers to bypass authentication and gain administrative privileges via a direct request.
network
low complexity
turnkeyforms CWE-264
7.5
2008-12-12 CVE-2008-5487 Cross-Site Scripting vulnerability in Turnkeyforms Text Link Sales
Cross-site scripting (XSS) vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to inject arbitrary web script or HTML via the id parameter.
4.3
2008-12-12 CVE-2008-5486 SQL Injection vulnerability in Turnkeyforms Text Link Sales
SQL injection vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
turnkeyforms CWE-89
7.5