← Back

Easycafeengine

easycafeengine

Vendor: Cafeengine • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cafeengine
1Easycafeengine
Apr 23, 2026
Feb 13, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in index.php in Easy CafeEngine allows remote attackers to execute arbitrary SQL commands via the catid parameter, a different vector than CVE-2008-4604.
1Cafeengine
1Easycafeengine
Apr 23, 2026
Oct 18, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in CafeEngine allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) dish.php and (2) menu.php.
1Cafeengine
1Easycafeengine
Apr 23, 2026
Oct 18, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in index.php in Easy CafeEngine 1.1 allows remote attackers to execute arbitrary SQL commands via the itemid parameter.