Vulnerabilities > Xigla > Absolute Image Gallery XE > High

DATE CVE VULNERABILITY TITLE RISK
2008-06-18 CVE-2008-2765 SQL Injection vulnerability in Xigla Absolute Image Gallery XE
SQL injection vulnerability in gallery.asp in Xigla Absolute Image Gallery XE allows remote attackers to execute arbitrary SQL commands via the categoryid parameter in a viewimage action.
network
low complexity
xigla CWE-89
7.5
2007-03-16 CVE-2007-1469 SQL Injection vulnerability in Xigla Absolute Image Gallery XE 2.0
SQL injection vulnerability in gallery.asp in Absolute Image Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the categoryid parameter in a viewimage action.
network
low complexity
xigla CWE-89
7.5