Vulnerabilities > Webidsupport > Webid > High

DATE CVE VULNERABILITY TITLE RISK
2018-12-20 CVE-2018-1000882 Path Traversal vulnerability in Webidsupport Webid
WeBid version up to current version 1.2.2 contains a Directory Traversal vulnerability in getthumb.php that can result in Arbitrary Image File Read.
network
low complexity
webidsupport CWE-22
7.5
2018-12-20 CVE-2018-1000867 SQL Injection vulnerability in Webidsupport Webid
WeBid version up to current version 1.2.2 contains a SQL Injection vulnerability in All five yourauctions*.php scripts that can result in Database Read via Blind SQL Injection.
network
low complexity
webidsupport CWE-89
8.8