Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Egypt Coder

#18192of 53,624
15Total CVSS
Vulnerabilities · 2
High
2
PT-2009-1941
7.5
2009-03-13
Mountaingrafix · Mountaingrafix Easylink · CVE-2008-6471
**Name of the Vulnerable Software and Affected Versions** MountainGrafix easyLink version 1.1.0 **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `cat` parameter in a "show" action in the detail.php file. **Recommendations** For MountainGrafix easyLink version 1.1.0, consider restricting access to the detail.php file until a patch is available. As a temporary workaround, avoid using the `cat` parameter in the "show" action to minimize the risk of exploitation.
PT-2008-5603
7.5
2008-09-30
Linkarity · Linkarity · CVE-2008-4353
Name of the Vulnerable Software and Affected Versions: Linkarity (affected versions not specified) Description: The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `cat id` parameter in the link.php file. It is noted that one component of Linkarity is distributable PHP code, but this issue might be site-specific. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.