Vulnerabilities > Webtester

DATE CVE VULNERABILITY TITLE RISK
2007-02-16 CVE-2007-0970 SQL-Injection vulnerability in WebTester
Multiple SQL injection vulnerabilities in WebTester 5.0.20060927 and earlier allow remote attackers to execute arbitrary SQL commands via the testID parameter to directions.php, and unspecified parameters to other files that accept GET or POST input.
network
low complexity
webtester
7.5
2007-02-16 CVE-2007-0969 Input Validation vulnerability in WebTester
Multiple cross-site scripting (XSS) vulnerabilities in WebTester 5.0.20060927 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to POST parameters to multiple files.
network
webtester
6.8