Vulnerabilities > BPG Infotech

DATE CVE VULNERABILITY TITLE RISK
2006-11-26 CVE-2006-6110 SQL-Injection vulnerability in Content Management System
Multiple SQL injection vulnerabilities in an unspecified BPG-InfoTech Content Management System product allow remote attackers to execute arbitrary SQL commands via the (1) vjob parameter in publications_list.asp or (2) InfoID parameter in publication_view.asp.
network
low complexity
bpg-infotech
7.5
2006-11-24 CVE-2006-6072 Products Vjob Parameter SQL Injection vulnerability in Bpg-Infotech Easy Publisher and Smart Publisher PRO
SQL injection vulnerability in bpg/publications_list.asp in BPG-InfoTech Easy Publisher and Smart Publisher//Pro 2.7.7 allows remote attackers to execute arbitrary SQL commands via the vjob parameter.
network
low complexity
bpg-infotech
7.5