Skip to main content

Vendor archive

softbizscripts CVEs

Beta · best-effort

27 CVEs tagged to vendor softbizscripts0 Critical, 16 High, 11 Medium, 0 Low, 0 Unrated.

CVE-2010-4905

Published Oct 8, 2011

SQL injection vulnerability in article_details.php in Softbiz Article Directory Script allows remote attackers to execute arbitrary SQL commands via the sbiz_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2790

Published Aug 17, 2009

SQL injection vulnerability in cat_products.php in SoftBiz Dating Script allows remote attackers to execute arbitrary SQL commands via the cid parameter. NOTE: this might overlap…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2232

Published Jun 26, 2009

SQL injection vulnerability in image.php in Softbiz Banner Ad Management Script allows remote attackers to execute arbitrary SQL commands via the size_id parameter. NOTE: the pro…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-6325

Published Feb 27, 2009

Multiple cross-site scripting (XSS) vulnerabilities in Softbiz Classifieds Script allow remote attackers to inject arbitrary web script or HTML via the (1) radio parameter to show…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-6306

Published Feb 26, 2009

Cross-site scripting (XSS) vulnerability in signinform.php in Softbiz Classifieds Script allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOT…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3511

Published Aug 7, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Softbiz Image Gallery (Photo Gallery) allow remote attackers to inject arbitrary web script or HTML via the (1) latest param…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2087

Published May 6, 2008

SQL injection vulnerability in search_result.php in Softbiz Web Host Directory Script, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6124

Published Nov 26, 2007

Cross-site scripting (XSS) vulnerability in signin.php in Softbiz Freelancers Script 1 allows remote attackers to inject arbitrary web script or HTML via the errmsg parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6125

Published Nov 26, 2007

SQL injection vulnerability in search_form.php in Softbiz Freelancers Script 1 allows remote attackers to execute arbitrary SQL commands via the sb_protype parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-5996

Published Nov 15, 2007

SQL injection vulnerability in searchresult.php in Softbiz Link Directory Script allows remote attackers to execute arbitrary SQL commands via the sbcat_id parameter, a related is…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-5998

Published Nov 15, 2007

SQL injection vulnerability in ads.php in Softbiz Ad Management plus Script 1 allows remote authenticated users to execute arbitrary SQL commands via the package parameter.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5449

Published Oct 14, 2007

SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbitrary SQL commands via the sbcat_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3607

Published Jul 18, 2006

Multiple cross-site scripting (XSS) vulnerabilities in Softbiz Banner Exchange Script (aka Banner Exchange Network Script) 1.0 allow remote attackers to inject arbitrary web scrip…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3271

Published Jun 28, 2006

Multiple SQL injection vulnerabilities in Softbiz Dating 1.0 allow remote attackers to execute SQL commands via the (1) country and (2) sort_by parameters in (a) search_results.ph…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-1659

Published Apr 7, 2006

Multiple SQL injection vulnerabilities in Softbiz Image Gallery allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in image_desc.php, (2) provided p…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1660

Published Apr 7, 2006

Cross-site scripting (XSS) vulnerability in image_desc.php in Softbiz Image Gallery allows remote attackers to inject arbitrary web script or HTML via msg parameter. NOTE: the pr…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-3937

Published Dec 1, 2005

SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloff…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-3938

Published Dec 1, 2005

SQL injection vulnerability in Softbiz FAQ Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the id parameter in (1) index.php, (2) faq_qanda.php…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 27 CVEsPage 1 of 2