VYPR

Email Marketing System

by Oi

CVEs (2)

  • CVE-2006-0920Feb 28, 2006
    risk 0.03cvss epss 0.00

    Oi! Email Marketing System 3.0 (aka Oi! 3) stores the server's FTP password in cleartext on a Configuration web page, which allows local users with superadministrator privileges, or attackers who have obtained access to the web page, to view the password.

  • CVE-2006-0919Feb 28, 2006
    risk 0.00cvss epss 0.01

    SQL injection vulnerability in index.php (aka the login page) in Oi! Email Marketing System 3.0 (aka Oi! 3) allows remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password fields.