Vulnerabilities > Future Internet

DATE CVE VULNERABILITY TITLE RISK
2006-12-28 CVE-2006-6777 Input Validation vulnerability in Future Internet
Cross-site scripting (XSS) vulnerability in index.cfm in Future Internet allows remote attackers to inject arbitrary web script or HTML via the categoryId parameter in a Portal.ShowPage action.
network
future-internet
6.8
2006-12-28 CVE-2006-6776 Input Validation vulnerability in Future Internet
Multiple SQL injection vulnerabilities in Future Internet allow remote attackers to execute arbitrary SQL commands via the (1) newsId or (2) categoryid parameter in a Portal.Showpage action in index.cfm, or (3) the langId parameter in index.cfm.
network
low complexity
future-internet
7.5