Shawn Bradley Php Volunteer Management vulnerabilities
2 known vulnerabilities affecting shawn_bradley/php_volunteer_management.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2012-6504P3HIGHCVSS 7.5PoCv1.0.22013-01-24
CVE-2012-6504 [HIGH] CWE-89 CVE-2012-6504: SQL injection vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allow
SQL injection vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
nvd
CVE-2012-6505P4MEDIUMCVSS 4.3PoCv1.0.22013-01-24
CVE-2012-6505 [MEDIUM] CWE-79 CVE-2012-6505: Cross-site scripting (XSS) vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Managemen
Cross-site scripting (XSS) vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
nvd