Filtered by vendor Silverstripe
Subscriptions
Filtered by product Silverstripe
Subscriptions
Total
64 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2010-4824 | 1 Silverstripe | 1 Silverstripe | 2017-08-29 | N/A |
SQL injection vulnerability in the augmentSQL method in core/model/Translatable.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when the Translatable extension is enabled, allows remote attackers to execute arbitrary SQL commands via the locale parameter. | ||||
CVE-2010-4823 | 1 Silverstripe | 1 Silverstripe | 2017-08-29 | N/A |
Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions." | ||||
CVE-2008-6753 | 1 Silverstripe | 1 Silverstripe | 2017-08-17 | N/A |
SQL injection vulnerability in SilverStripe before 2.2.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to AjaxUniqueTextField. | ||||
CVE-2007-2321 | 1 Silverstripe | 1 Silverstripe | 2017-07-29 | N/A |
Unspecified vulnerability in the search functionality in SilverStripe 2.0.0 has unknown impact and attack vectors. |