RSS   Vulnerabilities for 'Business community script'   RSS

2009-05-16
 
CVE-2009-1652

CWE-264
 

 
admin/adminaddeditdetails.php in Business Community Script does not properly restrict access, which allows remote attackers to gain privileges and add administrators via a direct request.

 
 
CVE-2009-1651

CWE-89
 

 
SQL injection vulnerability in admin/member_details.php in 2daybiz Business Community Script allows remote attackers to execute arbitrary SQL commands via the mid parameter.

 

 >>> Vendor: 2daybiz 13 Products
Auction script
Business community script
Template monster clone
Custom t-shirt design script
Polls script
Video community portal script
Web template software
Multi level marketing software
Matrimonial script
Job search engine script
Job site script
Network community script
Online classified script


Copyright 2024, cxsecurity.com

 

Back to Top