Skip to main content

Vendor/product archive

factosystem / factosystem_weblog CVEs

Beta · best-effort

2 CVEs tagged to factosystem / factosystem_weblog0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2008-5935

Published Jan 21, 2009

Facto stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the password via a d…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1499

Published Apr 2, 2003

Multiple SQL injection vulnerabilities in FactoSystem CMS allows remote attackers to perform unauthorized database actions via (1) the authornumber parameter in author.asp, (2) th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1