Vulnerabilities > Dcscripts > Dcforumlite > 3.0

DATE CVE VULNERABILITY TITLE RISK
2006-04-26 CVE-2006-2050 Input Validation vulnerability in Dcscripts Dcforumlite 3.0
SQL injection vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to execute arbitrary SQL commands via the az parameter.
network
low complexity
dcscripts
5.0
2006-04-26 CVE-2006-2049 Input Validation vulnerability in Dcscripts Dcforumlite 3.0
Cross-site scripting (XSS) vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to inject arbitrary web script or HTML via the az parameter.
network
dcscripts
4.3