Vulnerabilities > JMB Software

DATE CVE VULNERABILITY TITLE RISK
2006-07-06 CVE-2006-3377 Cross-Site Scripting vulnerability in AutoRank
Cross-site scripting (XSS) vulnerability in JMB Software AutoRank PHP 3.02 and earlier, and AutoRank Pro 5.01 and earlier, allows remote attackers to inject arbitrary web script or HTML via the (1) Keyword parameter in search.php and the (2) Username parameter in main.cgi.
network
high complexity
jmb-software
4.0
2006-04-12 CVE-2006-1750 Cross-Site Scripting vulnerability in JMB Software Autogallery 0.41
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Autogallery 0.41 allow remote attackers to inject arbitrary web script or HTML via the (1) pic or (2) show parameters.
network
high complexity
jmb-software CWE-79
2.6