Lawyer Search Script Project Lawyer Search Script vulnerabilities
2 known vulnerabilities affecting lawyer_search_script_project/lawyer_search_script.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2017-17620P3CRITICALCVSS 9.8PoCv1.12017-12-13
CVE-2017-17620 [CRITICAL] CWE-89 CVE-2017-17620: Lawyer Search Script 1.1 has SQL Injection via the /lawyer-list city parameter.
Lawyer Search Script 1.1 has SQL Injection via the /lawyer-list city parameter.
nvd
CVE-2018-6861P4MEDIUMCVSS 5.4v1.0.22018-02-12
CVE-2018-6861 [MEDIUM] CWE-79 CVE-2018-6861: Cross Site Scripting (XSS) exists in PHP Scripts Mall Lawyer Search Script 1.0.2 via a profile updat
Cross Site Scripting (XSS) exists in PHP Scripts Mall Lawyer Search Script 1.0.2 via a profile update parameter.
nvd