AzDGDatingMedium is prone to multiple remote vulnerabilities that includes a SQL-injection vulnerability, an information-disclosure vulnerability, a directory-traversal vulnerability and multiple cross-site scripting vulnerabilities
Vulnerable Systems:
* Azerbaijan Development Group AzDGDatingMedium 1.9.3
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, exploit latent vulnerabilities in the underlying database and gain access to sensitive information.
Vendor Status:
Currently we are not aware of any vendor-supplied patches.