← Back

Vld Interactive

vld_interactive

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Vldpersonals
vldpersonals

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Vld Interactive
1Vldpersonals
May 6, 2026
Nov 20, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in vldPersonals before 2.7.1 allow remote attackers to execute arbitrary SQL commands via the (1) country, (2) gender1, or ((3) gender2 parameter in a search action to index.php.
1Vld Interactive
1Vldpersonals
May 6, 2026
Nov 20, 2014
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in vldPersonals before 2.7.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a member_profile action to index.php.