Vulnerabilities > Casinosoft

DATE CVE VULNERABILITY TITLE RISK
2006-10-23 CVE-2006-5457 Cross-Site Scripting vulnerability in Casinosoft Casino Script 3.2
Multiple cross-site scripting (XSS) vulnerabilities in the registration form in Casinosoft Casino Script (Masvet) 3.2 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) surname field.
network
casinosoft
4.3
2006-10-23 CVE-2006-5446 SQL Injection vulnerability in Casinosoft Casino Script 3.2
SQL injection vulnerability in lobby/config.php in Casinosoft Casino Script (aka Masvet) 3.2 allows remote attackers to execute arbitrary SQL commands via the cfam parameter.
network
high complexity
casinosoft
5.1