Vulnerabilities > KKE Info Media

DATE CVE VULNERABILITY TITLE RISK
2006-06-07 CVE-2006-2884 Input Validation vulnerability in KKE Info Media Kmita FAQ 1.0
SQL injection vulnerability in index.php in Kmita FAQ 1.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter.
network
low complexity
kke-info-media
7.5
2006-06-07 CVE-2006-2883 Input Validation vulnerability in KKE Info Media Kmita FAQ 1.0
Cross-site scripting (XSS) vulnerability in search.php in Kmita FAQ 1.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter.
network
kke-info-media
4.3