Vulnerabilities > Virtuemart > Virtuemart > 1.0.7

DATE CVE VULNERABILITY TITLE RISK
2009-09-11 CVE-2008-7205 Improper Input Validation vulnerability in Virtuemart
Unspecified vulnerability in the product view functionality in VirtueMart 1.0.13a and earlier allows remote attackers to read arbitrary files via vectors related to a template file.
network
virtuemart CWE-20
4.3
2009-09-11 CVE-2008-7204 Cross-Site Request Forgery (CSRF) vulnerability in Virtuemart
Cross-site request forgery (CSRF) vulnerability in VirtueMart 1.0.13a and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
6.8