Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Certaindeath

#18120de 53,624
15CVSS total
Vulnerabilidades · 2
Alta
2
PT-2009-3146
7.5
2009-02-10
It · It!Cms · CVE-2009-0493
**Name of the Vulnerable Software and Affected Versions** IT!CMS versions 2.1a and earlier **Description** The issue allows remote attackers to execute arbitrary SQL commands via the `Username` in the login.php file. **Recommendations** For IT!CMS versions 2.1a and earlier, update to a version later than 2.1a to resolve the issue.
PT-2009-3060
7.5
2009-02-03
Smartsite · Smartsitecms · CVE-2009-0405
**Name of the Vulnerable Software and Affected Versions** smartSite CMS version 1.0 **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `var` parameter in the articles.php file. **Recommendations** For smartSite CMS version 1.0, avoid using the `var` parameter in the articles.php file until a fix is available. Consider restricting access to the articles.php file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.