VendorsWebmasterSitewsn_guestall versions
Vulnerabilities

WebmasterSite WSN Guest

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2011-1060
SQL injection vulnerability in the member function in classes/member.php in WSN Guest 1.24 allows remote attackers to execute arbitrary SQL commands via the wsnuser cookie to index.php.
Published 2011-02-22 · Modified
7.51 PoCEPSS 0.023
CVE-2011-1061
SQL injection vulnerability in memberlist.php in WSN Guest 1.24 allows remote attackers to execute arbitrary SQL commands via the time parameter.
Published 2011-02-22 · Modified
7.5EPSS 0.013
CVE-2009-0704
SQL injection vulnerability in search.php in WSN Guest 1.23 allows remote attackers to execute arbitrary SQL commands via the search parameter in an advanced action.
Published 2009-02-23 · Modified
7.51 PoCEPSS 0.010
CVE-2010-0672
SQL injection vulnerability in index.php in WSN Guest 1.02 allows remote attackers to execute arbitrary SQL commands via the orderlinks parameter.
Published 2010-02-22 · Modified
7.51 PoCEPSS 0.010