Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ratboy

#19779of 53,622
13.2Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-5474
8.2
2026-01-30
Infor · Infor Storefront B2B · CVE-2020-37033
**Name of the Vulnerable Software and Affected Versions** Infor Storefront B2B version 1.0 **Description** Infor Storefront B2B version 1.0 contains a SQL injection issue that allows attackers to manipulate database queries. This is achieved through the `usr name` parameter within login requests. Attackers can inject malicious SQL code into the `usr name` parameter, potentially allowing them to extract or modify database information. The vulnerable API endpoint is the login request. **Recommendations** Versions prior to 1.0 should be updated.
PT-2006-5255
5.0
2006-08-30
Xchat · Xchat · CVE-2006-4455
**Name of the Vulnerable Software and Affected Versions** Xchat versions 2.6.6 and earlier **Description** The issue allows remote attackers to cause a denial of service, resulting in a crash, via unspecified vectors involving the `PRIVMSG` command. The vendor has disputed this issue, stating that it does not affect version 2.6.7 or any recent version. **Recommendations** For Xchat versions 2.6.6 and earlier, consider disabling the `PRIVMSG` command as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this issue.