|
348291
|
- |
|
babe_logger
|
babe_logger
|
SQL injection vulnerability in Babe Logger 2 allows remote attackers to execute arbitrary SQL commands via the (1) gal parameter to index.php or (2) id parameter to comments.php.
|
NVD-CWE-Other
|
CVE-2005-3920
|
2009-10-9 13:33 |
2005-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348292
|
- |
|
socketkb
|
socketkb
|
PHP file include vulnerability in SocketKB 1.1.0 and earlier allows remote attackers to include arbitrary local files via the __f parameter.
|
NVD-CWE-Other
|
CVE-2005-3936
|
2009-10-9 13:33 |
2005-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348293
|
- |
|
softbiz
|
b2b_trading_marketplace_script
|
SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffe…
|
NVD-CWE-Other
|
CVE-2005-3937
|
2009-10-9 13:33 |
2005-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348294
|
- |
|
sun
|
java_plug-in
|
The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remote attackers to cause a denial of service (Internet Explorer crash) by creating …
|
CWE-16
Configuration
|
CVE-2005-4845
|
2009-08-28 13:00 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348295
|
- |
|
gnu
|
mailman
|
Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries.
|
NVD-CWE-Other
|
CVE-2002-0388
|
2009-07-22 06:00 |
2002-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348296
|
- |
|
wowbb
|
wowbb_web_forum
|
Multiple SQL injection vulnerabilities in WowBB Forum 1.61 allow remote attackers to execute arbitrary SQL commands via the (1) sort_by or (2) page parameters to view_user.php, or the (3) forum_id pa…
|
NVD-CWE-Other
|
CVE-2004-2181
|
2009-06-25 13:25 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348297
|
- |
|
abe_timmerman
|
zml.cgi
|
Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
|
NVD-CWE-Other
|
CVE-2001-1209
|
2009-04-30 13:08 |
2001-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348298
|
- |
|
virtual_programming
|
vp-asp
|
SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields.
|
NVD-CWE-Other
|
CVE-2002-1919
|
2009-04-11 13:14 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348299
|
- |
|
easyscripts
|
easynews
|
easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and gain access.
|
NVD-CWE-Other
|
CVE-2001-1527
|
2009-04-3 13:11 |
2001-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348300
|
- |
|
newsscript.co.uk
|
newsscript
|
newsscript.pl for NewsScript allows remote attackers to gain privileges by setting the mode parameter to admin.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-0735
|
2009-04-3 13:00 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|