Vulnerabilities (CVE)

Filtered by vendor 2daybiz Subscribe
Filtered by product Business Community Script
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-1652 1 2daybiz 1 Business Community Script 2024-02-04 7.5 HIGH N/A
admin/adminaddeditdetails.php in Business Community Script does not properly restrict access, which allows remote attackers to gain privileges and add administrators via a direct request.
CVE-2009-1651 1 2daybiz 1 Business Community Script 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in admin/member_details.php in 2daybiz Business Community Script allows remote attackers to execute arbitrary SQL commands via the mid parameter.