VYPR

Webtitan

by Webtitan

CVEs (2)

  • CVE-2014-4306Jun 18, 2014
    risk 0.04cvss epss 0.06

    Directory traversal vulnerability in logs-x.php in WebTitan before 4.04 allows remote attackers to read arbitrary files via a .. (dot dot) in the logfile parameter in a download action.

  • CVE-2014-4307Jun 18, 2014
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in categories-x.php in WebTitan before 4.04 allows remote attackers to execute arbitrary SQL commands via the sortkey parameter.