Vulnerabilities (CVE)

Filtered by vendor Cj Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4241 1 Cj 1 Ultra Plus 2024-11-21 7.5 HIGH N/A
SQL injection vulnerability in CJ Ultra Plus 1.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via an SID cookie.
CVE-2005-1506 1 Cj 1 Ultra Plus 2024-11-20 7.5 HIGH N/A
SQL injection vulnerability in out.php in CJ Ultra (CJUltra) Plus 1.0.3 and 1.0.4 allows remote attackers to execute arbitrary SQL commands via the perm parameter.