Vulnerabilities (CVE)

Filtered by vendor Dci-designs Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-0939 1 Dci-designs 1 Dci-taskeen 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in DCI-Taskeen 1.03 allows remote attackers to execute arbitrary SQL commands via the (1) id or (2) action parameter to (a) basket.php, or (3) id or (4) page parameter to (b) cat.php.
CVE-2006-1018 1 Dci-designs 1 Dawaween 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in poems.php in DCI-Designs Dawaween 1.03 allows remote attackers to execute arbitrary SQL commands via the id parameter in a diwan view action.