RSS   Vulnerabilities for 'Maian music'   RSS

2008-05-14
 
CVE-2008-2206

CWE-79
 

 
Multiple cross-site scripting (XSS) vulnerabilities in Maian Music 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter in a search action to index.php, and the (2) msg_script parameter to admin/inc/footer.php.

 
 
CVE-2008-2205

CWE-89
 

 
SQL injection vulnerability in index.php in Maian Music 1.1 allows remote attackers to execute arbitrary SQL commands via the album parameter in an album action.

 

 >>> Vendor: Maianscriptworld 13 Products
Maian cart
Maian weblog
Maian recipe
Maian uploader
Maian search
Maian music
Maian gallery
Maian greeting
Maian support
Maian guestbook
Maian links
Maian greetings
Maianaffiliate


Copyright 2024, cxsecurity.com

 

Back to Top