Vendors4homepages4images1.7.10
Vulnerabilities

4homepages 4images 1.7.10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2012-1022
SQL injection vulnerability in admin/categories.php in 4images 1.7.10 remote attackers to execute arbitrary SQL commands via the cat_parent_id parameter in an addcat action.
Published 2012-02-08 · Modified
7.51 PoCEPSS 0.010
CVE-2012-1023
Open redirect vulnerability in admin/index.php in 4images 1.7.10 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter.
Published 2012-02-08 · Modified
5.81 PoCEPSS 0.018
CVE-2012-1021
Cross-site scripting (XSS) vulnerability in admin/categories.php in 4images 1.7.10 allows remote attackers to inject arbitrary web script or HTML via the cat_parent_id parameter in an addcat action.
Published 2012-02-08 · Modified
4.31 PoCEPSS 0.015