VYPR

Jobs Portal Script

by Availscript

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2008-70210.040.06Aug 21, 2009Unrestricted file upload vulnerability in editlogo.php in AvailScript Jobs Portal Script allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as an image or logo, then accessing it via a direct request to the file in an unspecified directory.
CVE-2008-43730.030.00Oct 1, 2008SQL injection vulnerability in job_seeker/applynow.php in AvailScript Job Portal Script allows remote attackers to execute arbitrary SQL commands via the jid parameter.