Vulnerabilities (CVE)

Filtered by vendor Heybbs Project Subscribe
Filtered by product Heybbs
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-25006 1 Heybbs Project 1 Heybbs 2024-11-21 7.5 HIGH 9.8 CRITICAL
Heybbs v1.2 has a SQL injection vulnerability in login.php file via the username parameter which may allow a remote attacker to execute arbitrary code.
CVE-2020-25005 1 Heybbs Project 1 Heybbs 2024-11-21 7.5 HIGH 9.8 CRITICAL
Heybbs v1.2 has a SQL injection vulnerability in msg.php file via the ID parameter which may allow a remote attacker to execute arbitrary code.
CVE-2020-25004 1 Heybbs Project 1 Heybbs 2024-11-21 7.5 HIGH 9.8 CRITICAL
Heybbs v1.2 has a SQL injection vulnerability in user.php file via the ID parameter which may allow a remote attacker to execute arbitrary code.