Vulnerabilities > VU
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2007-11-29 | CVE-2007-6168 | SQL Injection vulnerability in VU Case Manager SQL injection vulnerability in default.asp in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the username parameter, a different vector than CVE-2007-6143. | 7.5 |
2007-11-27 | CVE-2007-6143 | SQL Injection vulnerability in VU Case Manager SQL injection vulnerability in default.asp (aka the Login Page) in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the password parameter. | 7.5 |
2007-11-27 | CVE-2007-6138 | SQL Injection vulnerability in VU Mass Mailer SQL injection vulnerability in redir.asp in VU Mass Mailer allows remote attackers to execute arbitrary SQL commands via the password parameter to Default.asp (aka the Login Page). | 7.5 |