Vulnerabilities > Webcortex

DATE CVE VULNERABILITY TITLE RISK
2004-11-23 CVE-2004-0305 Cross-Site Scripting vulnerability in Webcortex Webstores 2000 6.0
Cross-site scripting (XSS) vulnerability in error.asp in WebCortex WebStores 2000 6.0 allows remote attackers to execute arbitrary script as other users and steal session IDs via the Message_id parameter.
network
webcortex
6.8
2004-11-23 CVE-2004-0304 SQL Injection vulnerability in Webcortex Webstores 2000 6.0
SQL injection vulnerability in browse_items.asp in WebCortex WebStores 2000 6.0 allows remote attackers to gain unauthorized access and execute arbitrary commands via the Search_Text parameter.
network
low complexity
webcortex
critical
10.0