Filtered by vendor Softbiz Subscriptions
Filtered by product Image Gallery Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2006-1659 1 Softbiz 1 Image Gallery 2026-04-16 N/A
Multiple SQL injection vulnerabilities in Softbiz Image Gallery allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in image_desc.php, (2) provided parameter in template.php, (3) cid parameter in suggest_image.php, (4) img_id parameter in insert_rating.php, and (5) cid parameter in images.php.
CVE-2006-1660 1 Softbiz 1 Image Gallery 2026-04-16 N/A
Cross-site scripting (XSS) vulnerability in image_desc.php in Softbiz Image Gallery allows remote attackers to inject arbitrary web script or HTML via msg parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.