Filtered by vendor Duware Subscriptions
Total 23 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2005-2049 1 Duware 1 Duclassmate 2025-04-03 N/A
Multiple SQL injection vulnerabilities in DUware DUclassmate 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) iState parameter to default.asp or (2) iPro parameter to edit.asp.
CVE-2005-4166 1 Duware 1 Duportal Pro 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in password.asp in DUWare DUportal Pro 3.4.3 allows remote attackers to inject arbitrary web script or HTML via the result parameter.
CVE-2006-2302 1 Duware 1 Dugallery 2025-04-03 N/A
SQL injection vulnerability in admin_default.asp in DUGallery 2.x allows remote attackers to execute arbitrary SQL commands via the (1) Login or (2) password field.