Vulnerabilities (CVE)

Filtered by vendor Enterprise Heart Subscribe
Filtered by product Enterprise Connector
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-3875 1 Enterprise Heart 1 Enterprise Connector 2024-02-28 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in Enterprise Connector 1.0.2 and earlier allow remote attackers to execute arbitrary SQL commands via the messageid parameter in (1) send.php or (2) a delete action in messages.php.
CVE-2005-4563 1 Enterprise Heart 1 Enterprise Connector 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in main.php in Enterprise Heart Enterprise Connector 1.0.2 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the loginid parameter, a different vulnerability than CVE-2005-3875.