Vulnerabilities > Smbcms

DATE CVE VULNERABILITY TITLE RISK
2006-01-18 CVE-2006-0243 Local Site Search Cross-Site Scripting vulnerability in Smbcms 2.1
Cross-site scripting (XSS) vulnerability in SMBCMS 2.1 allows remote attackers to inject arbitrary web script or HTML via the text parameter, which is used by the "Search Site" field.
network
smbcms
4.3
2005-12-31 CVE-2005-4629 SQL-Injection vulnerability in Smbcms 2.1
SQL injection vulnerability in SMBCMS 2.1 allows remote attackers to execute arbitrary SQL commands via unspecified search parameters.
network
low complexity
smbcms
7.5