Vulnerabilities > Super Link Exchange Script

DATE CVE VULNERABILITY TITLE RISK
2007-02-23 CVE-2006-7035 Denial-Of-Service vulnerability in Super Link Exchange Script Super Link Exchange Script 1.0
Directory traversal vulnerability in make_thumbnail.php in Super Link Exchange Script 1.0 allows remote attackers to read arbitrary files via ".." sequences in the imgpath parameter.
network
low complexity
super-link-exchange-script
7.8
2007-02-23 CVE-2006-7034 SQL-Injection vulnerability in Super Link Exchange Script Super Link Exchange Script 1.0
SQL injection vulnerability in directory.php in Super Link Exchange Script 1.0 might allow remote attackers to execute arbitrary SQL queries via the cat parameter.
7.5
2007-02-23 CVE-2006-7033 Cross-Site Scripting vulnerability in Super Link Exchange Script Super Link Exchange Script 1.0
Cross-site scripting (XSS) vulnerability in Super Link Exchange Script 1.0 allows remote attackers to inject arbitrary web script or HTML via IMG tags in the search box.
6.8