Cross-site scripting (XSS) vulnerability in the do_mysql_query function in core.php for Open Searchable Image Catalogue (OSIC) before 0.7.0.1 allows remote attackers to inject arbitrary web scripts or HTML via failed SQL queries, which is reflected in an error message.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T17:58:52.038Z
Reserved: 2006-06-01T00:00:00
Link: CVE-2006-2750

No data.

Status : Deferred
Published: 2006-06-01T10:02:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-2750

No data.