RSS   Vulnerabilities for 'Virtue online test generator'   RSS

2009-07-09
 
CVE-2009-2393

 

 
admin/index.php in Virtuenetz Virtue Online Test Generator does not require administrative privileges, which allows remote authenticated users to have an unknown impact via unspecified vectors.

 
 
CVE-2009-2392

 

 
SQL injection vulnerability in text.php in Virtuenetz Virtue Online Test Generator allows remote attackers to execute arbitrary SQL commands via the tid parameter.

 
 
CVE-2009-2391

 

 
Cross-site scripting (XSS) vulnerability in text.php in Virtuenetz Virtue Online Test Generator allows remote attackers to inject arbitrary web script or HTML via the tid parameter.

 

 >>> Vendor: Virtuenetz 5 Products
Virtue shopping mall
Virtue book store
Virtue news manager
Virtue classifieds
Virtue online test generator


Copyright 2024, cxsecurity.com

 

Back to Top