Vulnerabilities (CVE)

Filtered by vendor Ryan Haudenschilt Subscribe
Filtered by product Family Connections
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-4791 1 Ryan Haudenschilt 1 Family Connections 2024-02-28 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in Family Connections (aka FCMS) before 1.8.2 allow remote attackers to execute arbitrary SQL commands via the (1) letter parameter to addressbook.php, (2) id parameter to recipes.php, (3) year parameter to register.php, (4) poll_id parameter to home.php, and (5) email parameter to lostpw.php.