FuturCMS SQL Injection and Multiple Cross Site Scripting Vulnerabilities
Description
Multiple vulnerabilities have been identified in FuturCMS, which could be exploited by attackers to manipulate or disclose certain data. These issues are caused by input validation errors in various scripts when processing user-supplied parameters, which could be exploited to conduct cross site scripting and SQL injection attacks.
Vulnerable Products
Vulnerable Software: FuturCMS version 1.0.2 and prior
Solution
The vendor does not support the script any longer.Remove the script from your web site.