Sefrengo

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    1
    Critical Level Threats
    2
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2015-5052

    SQL injection vulnerability in Sefrengo before 1.6.5 beta2.

    Last Modified: Apr 20, 2025
    Published: Sep 07, 2017

    CVE-2015-1428

    Multiple SQL injection vulnerabilities in Sefrengo before 1.6.2 allow (1) remote attackers to execute arbitrary SQL commands via the sefrengo cookie in a login to backend/main.php or (2) remote authenticated users to execute arbitrary SQL commands via the value_id parameter in a save_value action to backend/main.php.

    Last Modified: Apr 12, 2025
    Published: Feb 03, 2015

    CVE-2015-0918

    Cross-site scripting (XSS) vulnerability in the administrative backend in Sefrengo before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the searchterm parameter to backend/main.php.

    Last Modified: Apr 12, 2025
    Published: Jan 08, 2015

    CVE-2015-0919

    Multiple SQL injection vulnerabilities in the administrative backend in Sefrengo before 1.6.1 allow remote administrators to execute arbitrary SQL commands via the (1) idcat or (2) idclient parameter to backend/main.php.

    Last Modified: Apr 12, 2025
    Published: Jan 08, 2015
    Items Per Page
    Sefrengo Vulnerabilities & Security CVEs | CVE-DB