Vulnerabilities > Website Designs FOR Less

DATE CVE VULNERABILITY TITLE RISK
2006-12-31 CVE-2006-6859 SQL Injection vulnerability in Click N' Print Coupons Coupon_Detail.ASP
SQL injection vulnerability in coupon_detail.asp in Website Designs For Less Click N' Print Coupons 2005.01 and earlier allows remote attackers to execute arbitrary SQL commands via the key parameter.
network
low complexity
website-designs-for-less
critical
10.0
2006-11-17 CVE-2006-5943 Input Validation vulnerability in Inventory Manager
Multiple SQL injection vulnerabilities in inventory/display/imager.asp in Website Designs for Less Inventory Manager allow remote attackers to execute arbitrary SQL commands via the (1) pictable, (2) picfield, or (3) where parameter.
network
low complexity
website-designs-for-less
7.5
2006-11-17 CVE-2006-5942 Input Validation vulnerability in Inventory Manager
Cross-site scripting (XSS) vulnerability in inventory/display/display_results.asp in Website Designs For Less Inventory Manager allows remote attackers to inject arbitrary web script or HTML via the category parameter.
6.8