Vulnerabilities > Webslider

DATE CVE VULNERABILITY TITLE RISK
2008-05-23 CVE-2008-2422 SQL Injection vulnerability in Webslider 0.6
SQL injection vulnerability in index.php in Web Slider 0.6 allows remote attackers to execute arbitrary SQL commands via the slide parameter in a slides action.
network
low complexity
webslider CWE-89
7.5
2007-04-18 CVE-2007-2067 Remote Security vulnerability in Webslider 0.6
Multiple PHP remote file inclusion vulnerabilities in Marco Antonio Islas Cruz Web Slider (WebSlider) 0.6 allow remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) index.php, (2) modules/pdf.php, (3) plugins/highlight.php, or (4) include/modules.php.
network
low complexity
webslider
7.5