Vulnerabilities
Vulnerable Software
Campware.org:  >> Campsite  >> 2.2.2  Security Vulnerabilities
SQL injection vulnerability in the ArticleAttachment::GetAttachmentsByArticleNumber method in javascript/tinymcs/plugins/campsiteattachment/attachments.php in Campsite 3.3.5 and earlier allows remote attackers to execute arbitrary SQL commands via the article_id parameter.
CVSS Score
7.5
EPSS Score
0.008
Published
2010-05-07
The notifyendsubs cron job in Campsite before 2.3.3 sends an e-mail message containing a certain unencrypted MySQL password, which allows remote attackers to sniff the password.
CVSS Score
5.0
EPSS Score
0.004
Published
2005-12-31


Contact Us

Shodan ® - All rights reserved