Vulnerabilities (CVE)

Filtered by vendor Qdig Subscribe
Filtered by product Qdig
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-0876 1 Qdig 1 Qdig 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Quick Digital Image Gallery (Qdig) 1.2.9.3 and devel-20060624 allows remote attackers to inject arbitrary web script or HTML via the Qwd parameter to the top-level URI.
CVE-2006-3265 1 Qdig 1 Qdig 2024-02-04 2.6 LOW N/A
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Qdig before 1.2.9.3, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) pre_gallery or (2) post_gallery parameters.