Vulnerabilities (CVE)

Filtered by vendor Junction Quest Subscribe
Filtered by product Image Racer
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-3987 1 Junction Quest 1 Image Racer 2025-04-09 7.5 HIGH N/A
SQL injection vulnerability in SearchResults.asp in ImageRacer 1.0, when WordSearchCrit is enabled, allows remote attackers to execute arbitrary SQL commands via the SearchWord parameter.