Skip to main content

Vendor/product archive

grayscale / bandsite_cms CVEs

Beta · best-effort

4 CVEs tagged to grayscale / bandsite_cms0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2006-4984

Published Sep 26, 2006

Multiple PHP remote file inclusion vulnerabilities in Grayscale BandSite CMS allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[root_path] parameter in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-4985

Published Sep 26, 2006

Multiple cross-site scripting (XSS) vulnerabilities in Grayscale BandSite CMS allow remote attackers to inject arbitrary web script or HTML via (1) the max_file_size_purdy paramet…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4986

Published Sep 26, 2006

Grayscale BandSite CMS allows remote attackers to obtain sensitive information via a direct request for (1) certain files in the includes/content directory, (2) includes/shows_pre…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3193

Published Jun 23, 2006

Multiple PHP remote file inclusion vulnerabilities in Grayscale BandSite CMS 1.1.1, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a UR…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1