← Back

Faq Manager Pro

faq_manager_pro

Vendor: Ocean12tech • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ocean12tech
1Faq Manager Pro
Apr 23, 2026
Aug 25, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Ocean12 FAQ Manager Pro stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for admin/o12faq.mdb.
1Ocean12tech
1Faq Manager Pro
Apr 23, 2026
Mar 2, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in default.asp in Ocean12 FAQ Manager Pro 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a Cat action. NOTE: some of these details are obtained from thi...Show more
SQL injection vulnerability in default.asp in Ocean12 FAQ Manager Pro 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a Cat action. NOTE: some of these details are obtained from third party information.Show less