|
293071
|
- |
|
evilboard
|
evilboard
|
SQL injection vulnerability in index.php in EvilBoard 0.1a (Alpha) allows remote attackers to execute arbitrary SQL commands the c parameter.
|
CWE-89
SQL Injection
|
CVE-2008-0154
|
2017-09-29 10:30 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293072
|
- |
|
evilboard
|
evilboard
|
Cross-site scripting (XSS) vulnerability in index.php in EvilBoard 0.1a (Alpha) allows remote attackers to inject arbitrary web script or HTML via the c parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-0155
|
2017-09-29 10:30 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293073
|
- |
|
flexbb
|
flexbb
|
SQL injection vulnerability in FlexBB 0.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the flexbb_temp_id parameter in a cookie.
|
CWE-89
SQL Injection
|
CVE-2008-0157
|
2017-09-29 10:30 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293074
|
- |
|
shop-script
|
shop-script
|
Directory traversal vulnerability in index.php in Shop-Script 2.0 and possibly other versions allows remote attackers to read arbitrary files via a .. (dot dot) in the aux_page parameter.
|
CWE-22
Path Traversal
|
CVE-2008-0158
|
2017-09-29 10:30 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293075
|
- |
|
eggblog
|
eggblog
|
SQL injection vulnerability in index.php in eggBlog 3.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the eggblogpassword parameter in a cookie.
|
CWE-89
SQL Injection
|
CVE-2008-0159
|
2017-09-29 10:30 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293076
|
- |
|
spacial_audio_solutions
|
samphpweb
|
SQL injection vulnerability in songinfo.php in SAM Broadcaster samPHPweb, possibly 4.2.2 and earlier, allows remote attackers to execute arbitrary SQL commands via the songid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-0187
|
2017-09-29 10:30 |
2008-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293077
|
- |
|
uebimiau
|
webmail
|
Uebimiau Webmail 2.7.10 and 2.7.2 does not protect authentication state variables from being set through HTTP requests, which allows remote attackers to bypass authentication via a sess[auth]=1 param…
|
CWE-287
Improper Authentication
|
CVE-2008-0210
|
2017-09-29 10:30 |
2008-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293078
|
- |
|
php_webquest
|
php_webquest
|
SQL injection vulnerability in soporte_horizontal_w.php in PHP Webquest 2.6 allows remote attackers to execute arbitrary SQL commands via the id_actividad parameter, a different vector than CVE-2007-…
|
CWE-89
SQL Injection
|
CVE-2008-0219
|
2017-09-29 10:30 |
2008-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293079
|
- |
|
gateway
|
cweblaunchctl_activex_control weblaunch
|
Multiple stack-based buffer overflows in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allow remote attackers to execute arbitrary cod…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0220
|
2017-09-29 10:30 |
2008-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293080
|
- |
|
gateway
|
weblaunch
|
Directory traversal vulnerability in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allows remote attackers to execute arbitrary progra…
|
CWE-22
Path Traversal
|
CVE-2008-0221
|
2017-09-29 10:30 |
2008-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|