cfmsource records
4 published records for vendor cfmsource.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2008-6319Proof of concept | SQL injection vulnerability in calendarevent.cfm in CF_Calendar allows remote attackers to execute arbitrary SQL commands via the calid paracfmsource · cf calendar · CWE-89 | High7.5 | — | 1.0% | Feb 27, 2009 |
30Monitor | CVE-2008-6322Proof of concept | SQL injection vulnerability in index.cfm in CFMSource CFMBlog allows remote attackers to execute arbitrary SQL commands via the categorynbr cfmsource · cfmblog · CWE-89 | High7.5 | — | 1.0% | Feb 27, 2009 |
30Monitor | CVE-2008-6324Proof of concept | SQL injection vulnerability in forummessages.cfm in CF_Forum allows remote attackers to execute arbitrary SQL commands via the categorynbr pcfmsource · cf forum · CWE-89 | High7.5 | — | 1.0% | Feb 27, 2009 |
30Monitor | CVE-2008-6323Proof of concept | SQL injection vulnerability in forummessages.cfm in CFMSource CF_Auction allows remote attackers to execute arbitrary SQL commands via the ccfmsource · cf auction · CWE-89 | High7.5 | — | 0.9% | Feb 27, 2009 |
- CVE-2008-631930Monitor
SQL injection vulnerability in calendarevent.cfm in CF_Calendar allows remote attackers to execute arbitrary SQL commands via the calid para
HighCVSS 7.5Proof of conceptEPSS 1%cfmsource · cf calendarFeb 27, 2009
- CVE-2008-632230Monitor
SQL injection vulnerability in index.cfm in CFMSource CFMBlog allows remote attackers to execute arbitrary SQL commands via the categorynbr
HighCVSS 7.5Proof of conceptEPSS 1%cfmsource · cfmblogFeb 27, 2009
- CVE-2008-632430Monitor
SQL injection vulnerability in forummessages.cfm in CF_Forum allows remote attackers to execute arbitrary SQL commands via the categorynbr p
HighCVSS 7.5Proof of conceptEPSS 1%cfmsource · cf forumFeb 27, 2009
- CVE-2008-632330Monitor
SQL injection vulnerability in forummessages.cfm in CFMSource CF_Auction allows remote attackers to execute arbitrary SQL commands via the c
HighCVSS 7.5Proof of conceptEPSS 1%cfmsource · cf auctionFeb 27, 2009