Skip to main content

Vendor/product archive

turnkeyforms / web_hosting_directory CVEs

Beta · best-effort

3 CVEs tagged to turnkeyforms / web_hosting_directory0 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2008-6941

Published Aug 12, 2009

SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQL commands via the password field.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-6940

Published Aug 12, 2009

TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain a database backup via…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-6939

Published Aug 12, 2009

TurnkeyForms Web Hosting Directory allows remote attackers to bypass authentication and (1) gain administrative privileges by setting the adm cookie to 1 or (2) gain privileges as…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1