Lucene search

K

Idms Pro Image Gallery Security Vulnerabilities

cve
cve

CVE-2006-6195

Multiple SQL injection vulnerabilities in Fixit iDMS Pro Image Gallery allow remote attackers to execute arbitrary SQL commands via the (1) show_id or (2) parentid parameter to (a) filelist.asp, or the (3) fid parameter to (b) showfile.asp.

8.9AI Score

0.008EPSS

2006-12-01 12:28 AM
17
cve
cve

CVE-2006-6196

Cross-site scripting (XSS) vulnerability in the search functionality in Fixit iDMS Pro Image Gallery allows remote attackers to inject arbitrary web script or HTML via a search field (txtsearchtext parameter).

5.9AI Score

0.077EPSS

2006-12-01 12:28 AM
15