Vulnerabilities (CVE)

Filtered by vendor Yourfreeworld Subscribe
Total 30 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4900 1 Yourfreeworld 1 Classifieds Blaster Script 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Blaster Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2008-4882 1 Yourfreeworld 1 Autoresponder Hosting Script 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in tr.php in YourFreeWorld Autoresponder Hosting Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2009-3540 1 Yourfreeworld 1 Ultra Classifieds Pro 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in listads.php in YourFreeWorld Ultra Classifieds Pro allows remote attackers to inject arbitrary web script or HTML via the cn parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVE-2008-4883 1 Yourfreeworld 1 Blog Blaster Script 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in tr.php in YourFreeWorld Blog Blaster Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2008-4895 1 Yourfreeworld 1 Downline Builder Script 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in tr.php in YourFreeWorld Downline Builder allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2008-4881 1 Yourfreeworld 1 Reminder Service Script 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in tr.php in YourFreeWorld Reminder Service Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2006-6461 1 Yourfreeworld 1 Stylish Text Ads Script 2024-02-04 7.8 HIGH N/A
tr1.php in Yourfreeworld Stylish Text Ads Script allows remote attackers to obtain the installation path via an invalid id parameter, which leaks the path in an error message. NOTE: this issue might be resultant from CVE-2006-2508.
CVE-2006-2510 1 Yourfreeworld 1 Short Url And Url Tracker Script 2024-02-04 6.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the URL submission form in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to inject arbitrary web script or HTML via an unspecified form for submitting URLs.
CVE-2006-2509 1 Yourfreeworld 1 Short Url And Url Tracker Script 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in login.php in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2006-2508 1 Yourfreeworld 1 Stylish Text Ads Script 2024-02-04 6.4 MEDIUM N/A
SQL injection vulnerability in tr1.php in YourFreeWorld.com Stylish Text Ads Script allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly involving an attack vector using advertise.php.