RSS   Vulnerabilities for 'Digirez'   RSS

2007-05-29
 
CVE-2007-2880

CWE-Other
 

 
Multiple cross-site scripting (XSS) vulnerabilities in Digirez 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) Room_name parameter to room/info_book.asp or the (2) curYear parameter to room/week.asp.

 
2007-01-09
 
CVE-2007-0128

 

 
SQL injection vulnerability in info_book.asp in Digirez 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the book_id parameter.

 

 >>> Vendor: Digiappz 5 Products
Freekot
Digirez
Digiaffiliate
Digidomain
Digileave


Copyright 2024, cxsecurity.com

 

Back to Top