Vulnerabilities > Websihirbazi

DATE CVE VULNERABILITY TITLE RISK
2007-12-28 CVE-2007-6556 SQL Injection vulnerability in Websihirbazi 5.1.1
Multiple SQL injection vulnerabilities in websihirbazi 5.1.1 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to default.asp in a news page action or (2) the pageid parameter to default.asp.
network
low complexity
websihirbazi CWE-89
7.5