A vulnerability was found in Synthetic Reality Sympoll 1.5. It has been rated as problematic. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument vo leads to basic cross site scripting.
This vulnerability is handled as CVE-2003-1175. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in Johan Cwiklinski Galette 0.63/0.63.1/0.63.2/0.63.3. It has been classified as critical. Affected is an unknown function. The manipulation of the argument id_adh leads to sql injection.
This vulnerability is traded as CVE-2012-2338. It is possible to launch the attack remotely. Furthermore, there is an exploit available.