RSS   Vulnerabilities for 'Pre e-learning portal'   RSS

2010-03-10
 
CVE-2010-0954

CWE-89
 

 
SQL injection vulnerability in search_result.asp in Pre Projects Pre E-Learning Portal allows remote attackers to execute arbitrary SQL commands via the course_ID parameter.

 
2009-02-04
 
CVE-2008-6052

CWE-264
 

 
PreProjects Pre E-Learning Portal stores db_elearning.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request.

 

 >>> Vendor: Preprojects 14 Products
Pre shopping mall
E-smart cart
Php jobwebsite pro
Pre job board
Pre ads portal
Pre real estate listings
Pre e-learning portal
Pre resume submitter
Pre classified listings
Pre podcast portal
Pre classified listings asp
Pre online tests generator
Business cards designer
Pre printing press


Copyright 2024, cxsecurity.com

 

Back to Top