Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Falt4 Cms Subscribe
Filtered by product Falt4 Extreme Rc4
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-6311 1 Falt4 Cms 1 Falt4 Extreme Rc4 2018-10-15 7.5 HIGH N/A
SQL injection vulnerability in (1) index.php, and possibly (2) admin/index.php, in Falt4Extreme RC4 10.9.2007 allows remote attackers to execute arbitrary SQL commands via the nav_ID parameter.
CVE-2007-6310 1 Falt4 Cms 1 Falt4 Extreme Rc4 2018-10-15 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Falt4Extreme RC4 10.9.2007 allow remote attackers to inject arbitrary web script or HTML via the handler parameter to (1) index.php and possibly (2) admin/index.php, and (3) the topic parameter to modules/feed/feed.php (aka modules/feed.php).