VYPR
Vendor

FS

Products
22
CVEs
23
Across products
24
Status
Private

Products

22

Recent CVEs

23
View all 23 CVEs →
  • CVE-2017-17643CriDec 18, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Lynda Clone 1.0 has SQL Injection via the keywords parameter to tutorial/.

  • CVE-2017-17590CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.04

    FS Stackoverflow Clone 1.0 has SQL Injection via the /question keywords parameter.

  • CVE-2017-17589CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Thumbtack Clone 1.0 has SQL Injection via the browse-category.php cat parameter or the browse-scategory.php sc parameter.

  • CVE-2017-17587CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Indiamart Clone 1.0 has SQL Injection via the catcompany.php token parameter, buyleads-details.php id parameter, or company/index.php c parameter.

  • CVE-2017-17586CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Olx Clone 1.0 has SQL Injection via the subpage.php scat parameter or the message.php pid parameter.

  • CVE-2017-17584CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Makemytrip Clone 1.0 has SQL Injection via the show-flight-result.php fl_orig or fl_dest parameter.

  • CVE-2017-17583CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Shutterstock Clone 1.0 has SQL Injection via the /Category keywords parameter.

  • CVE-2017-17582CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Grubhub Clone 1.0 has SQL Injection via the /food keywords parameter.

  • CVE-2017-17581CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Quibids Clone 1.0 has SQL Injection via the itechd.php productid parameter.

  • CVE-2017-17580CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Linkedin Clone 1.0 has SQL Injection via the group.php grid parameter, profile.php fid parameter, or company_details.php id parameter.

  • CVE-2017-17579CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Freelancer Clone 1.0 has SQL Injection via the profile.php u parameter.

  • CVE-2017-17578CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Crowdfunding Script 1.0 has SQL Injection via the latest_news_details.php id parameter.

  • CVE-2017-17577CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Trademe Clone 1.0 has SQL Injection via the search_item.php search parameter or the general_item_details.php id parameter.

  • CVE-2017-17573CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Ebay Clone 1.0 has SQL Injection via the product.php id parameter, or the search.php category_id or sub_category_id parameter.

  • CVE-2017-17572CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Amazon Clone 1.0 has SQL Injection via the PATH_INFO to /VerAyari.

  • CVE-2017-17571CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Foodpanda Clone 1.0 has SQL Injection via the /food keywords parameter.

  • CVE-2017-17570CriDec 13, 2017
    risk 0.67cvss 9.8epss 0.03

    FS Expedia Clone 1.0 has SQL Injection via the pages.php or content.php id parameter, or the show-flight-result.php fl_orig or fl_dest parameter.

  • CVE-2023-30350HigMay 29, 2023
    risk 0.61cvss 8.8epss 0.05

    FS S3900-24T4S devices allow authenticated attackers with guest access to escalate their privileges and reset the admin password.

  • CVE-2020-24033HigOct 22, 2020
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in fs.com S3900 24T4S 1.7.0 and earlier. The form does not have an authentication or token authentication mechanism that allows remote attackers to forge requests on behalf of a site administrator to change all settings including deleting users, creating…

  • CVE-2017-17903HigDec 27, 2017
    risk 0.57cvss 8.8epss 0.00

    FS Lynda Clone has CSRF via user/edit_profile, as demonstrated by adding content to the user panel.