Vulnerabilities (CVE)

Filtered by vendor Phpmyfamily Subscribe
Filtered by product Phpmyfamily
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-1425 1 Phpmyfamily 1 Phpmyfamily 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in track.php in phpmyfamily 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the name parameter.
CVE-2005-0841 1 Phpmyfamily 1 Phpmyfamily 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in (1) people.php, (2) track.php, (3) edit.php, (4) document.php, (5) census.php, (6) passthru.php and possibly other php files in phpMyFamily 1.4.0 allows remote attackers to execute arbitrary SQL commands, as demonstrated via (1) the person parameter to people.php or (2) the Login field.