VendorsBlue Riversava_cmsany version
Vulnerabilities

Blue River Sava CMS any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2008-6434
SQL injection vulnerability in index.cfm in Blue River Interactive Group Sava CMS before 5.0.122 allows remote attackers to execute arbitrary SQL commands via the LinkServID parameter.
Published 2009-03-06 · Modified
7.5EPSS 0.011
CVE-2008-6433
Cross-site scripting (XSS) vulnerability in index.cfm in Blue River Interactive Group Sava CMS before 5.0.122 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search action.
Published 2009-03-06 · Modified
4.3EPSS 0.011