cpe:/a:china-on-site:flexphpdirectory:0.0.1 CVE-2008-6749 2009-04-24T10:30:00.203-04:00 2017-09-28T21:33:19.057-04:00 6.8 NETWORK MEDIUM NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2009-04-24T10:45:00.000-04:00 SECUNIA 33353 OSVDB 51302 EXPLOIT-DB 7614 XF flexphpdirectory-index-sql-injection(47640) Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPDirectory 0.0.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) checkuser and (2) checkpass parameters.