Vulnerabilities > Txtsql

DATE CVE VULNERABILITY TITLE RISK
2009-03-02 CVE-2009-0750 SQL Injection vulnerability in Tombstone Smnews
SQL injection vulnerability in login.php in the smNews example script for txtSQL 2.2 Final allows remote attackers to execute arbitrary SQL commands via the username parameter.
network
low complexity
txtsql tombstone CWE-89
7.5
2008-08-12 CVE-2008-3595 Code Injection vulnerability in Txtsql 2.2
PHP remote file inclusion vulnerability in examples/txtSQLAdmin/startup.php in txtSQL 2.2 Final allows remote attackers to execute arbitrary PHP code via a URL in the CFG[txtsql][class] parameter.
network
txtsql CWE-94
critical
9.3