VYPR

Future Internet

by Future Internet

CVEs (2)

  • CVE-2006-6776Dec 28, 2006
    risk 0.03cvss epss 0.01

    Multiple SQL injection vulnerabilities in Future Internet allow remote attackers to execute arbitrary SQL commands via the (1) newsId or (2) categoryid parameter in a Portal.Showpage action in index.cfm, or (3) the langId parameter in index.cfm.

  • CVE-2006-6777Dec 28, 2006
    risk 0.03cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in index.cfm in Future Internet allows remote attackers to inject arbitrary web script or HTML via the categoryId parameter in a Portal.ShowPage action.