CyberSec.Space Logo
Back to CVE Browser

CVE-2009-2010

MEDIUM
6.5
CVSS Severity Score
EPSS Score0.1900%
EPSS Percentile2.95th
PublishedJun 8, 2009
Last ModifiedApr 23, 2026

Vulnerability Description

Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.9 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) thread parameter to messageboard.php, (2) member parameter to profile.php, (3) pid parameter to gallery/index.php, and the (4) fcms_login_id cookie parameter.

Affected Platforms (CPE)

πŸ“¦
Haudenschilt

Family Connections Cms

<= 1.9
πŸ“¦
Haudenschilt

Family Connections Cms

= 0.1.1
πŸ“¦
Haudenschilt

Family Connections Cms

= 0.1.2
πŸ“¦
Haudenschilt

Family Connections Cms

= 0.5
πŸ“¦
Haudenschilt

Family Connections Cms

= 0.6
πŸ“¦
Haudenschilt

Family Connections Cms

= 0.8
πŸ“¦
Haudenschilt

Family Connections Cms

= 0.9
πŸ“¦
Haudenschilt

Family Connections Cms

= 1.4
πŸ“¦
Haudenschilt

Family Connections Cms

= 1.8.1
πŸ“¦
Haudenschilt

Family Connections Cms

= 1.8.2

References & Advisories

Related Vulnerabilities