Oneorzero
by Oneorzero
CVEs (3)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2006-1501 | 0.03 | — | 0.01 | Mar 30, 2006 | SQL injection vulnerability in index.php in OneOrZero 1.6.3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly in the kans action. | ||
| CVE-2006-4350 | 0.00 | — | 0.00 | Aug 24, 2006 | SQL injection vulnerability in index.php in OneOrZero 1.6.4.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | ||
| CVE-2006-4351 | 0.00 | — | 0.01 | Aug 24, 2006 | Cross-site scripting (XSS) vulnerability in index.php in OneOrZero 1.6.4.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. |
- CVE-2006-1501Mar 30, 2006risk 0.03cvss —epss 0.01
SQL injection vulnerability in index.php in OneOrZero 1.6.3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly in the kans action.
- CVE-2006-4350Aug 24, 2006risk 0.00cvss —epss 0.00
SQL injection vulnerability in index.php in OneOrZero 1.6.4.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
- CVE-2006-4351Aug 24, 2006risk 0.00cvss —epss 0.01
Cross-site scripting (XSS) vulnerability in index.php in OneOrZero 1.6.4.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.