VYPR

Garagesales Script

by Garagesalesjunkie

CVEs (2)

  • CVE-2009-2778Aug 14, 2009
    risk 0.03cvss epss 0.00

    Cross-site scripting (XSS) vulnerability in visitor/view.php in GarageSales Script allows remote attackers to inject arbitrary web script or HTML via the key parameter. NOTE: some of these details are obtained from third party information.

  • CVE-2009-2777Aug 14, 2009
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in visitor/view.php in GarageSales Script allows remote attackers to execute arbitrary SQL commands via the key parameter.