Vulnerabilities > Walla Telesite

DATE CVE VULNERABILITY TITLE RISK
2005-11-16 CVE-2005-3579 Input Validation vulnerability in Walla TeleSite
ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to access arbitrary local files via the querystring.
network
low complexity
walla-telesite
5.0
2005-11-16 CVE-2005-3578 Input Validation vulnerability in Walla TeleSite
SQL injection vulnerability in ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to inject arbitrary SQL commands via the sug parameter.
network
low complexity
walla-telesite
7.5
2005-11-16 CVE-2005-3577 Input Validation vulnerability in Walla TeleSite
Cross-site scripting vulnerability (XSS) in ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the sug parameter.
network
walla-telesite
4.3
2005-11-16 CVE-2005-3576 Input Validation vulnerability in Walla TeleSite
ts.exe in Walla TeleSite 3.0 and earlier allows remote attackers to access privileged information by entering the article number in tsurl parameter.
network
low complexity
walla-telesite
5.0