|
294301
|
- |
|
jcomsoft speedbit
|
anigif download_accelerator_plus
|
Multiple stack-based buffer overflows in the Animation GIF ActiveX control in JComSoft AniGIF.ocx 1.12 and 2.47, as used in products such as SpeedBit Download Accelerator Plus (DAP) 8.6, allow remote…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3702
|
2017-09-29 10:31 |
2008-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294302
|
- |
|
zeeways
|
zeejobsite
|
SQL injection vulnerability in bannerclick.php in ZEEJOBSITE 2.0 allows remote attackers to execute arbitrary SQL commands via the adid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3706
|
2017-09-29 10:31 |
2008-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294303
|
- |
|
dotcms
|
dotcms
|
Multiple directory traversal vulnerabilities in dotCMS 1.6.0.9 allow remote attackers to read arbitrary files via a .. (dot dot) in the id parameter to (1) news/index.dot and (2) getting_started/macr…
|
CWE-22
Path Traversal
|
CVE-2008-3708
|
2017-09-29 10:31 |
2008-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294304
|
- |
|
dotcms
|
dotcms
|
In order to exploit this vulnerability to execute arbitrary code, the attacker would first be required to upload a malicious file or inject arbitrary commands into an existing file.
|
CWE-22
Path Traversal
|
CVE-2008-3708
|
2017-09-29 10:31 |
2008-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294305
|
- |
|
phparcadescript
|
phparcadescript
|
SQL injection vulnerability in index.php in PHPArcadeScript (PHP Arcade Script) 4.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter in a browse action.
|
CWE-89
SQL Injection
|
CVE-2008-3711
|
2017-09-29 10:31 |
2008-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294306
|
- |
|
phpbasket
|
phpbasket
|
SQL injection vulnerability in product.php in PHPBasket allows remote attackers to execute arbitrary SQL commands via the pro_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3713
|
2017-09-29 10:31 |
2008-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294307
|
- |
|
harmoni
|
harmoni
|
Cross-site request forgery (CSRF) vulnerability in Harmoni before 1.6.0 allows remote attackers to make administrative modifications via a (1) save or (2) delete action to an unspecified component.
|
CWE-352
Origin Validation Error
|
CVE-2008-3716
|
2017-09-29 10:31 |
2008-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294308
|
- |
|
harmoni
|
harmoni
|
Download Harmoni 1.6.0 at Sourceforge:
http://sourceforge.net/project/showfiles.php?group_id=82873&package_id=85063
|
CWE-352
Origin Validation Error
|
CVE-2008-3716
|
2017-09-29 10:31 |
2008-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294309
|
- |
|
cyberbb
|
cyberbb
|
Multiple SQL injection vulnerabilities in cyberBB 0.6 allow remote authenticated users to execute arbitrary SQL commands via the (1) id parameter to show_topic.php and the (2) user parameter to profi…
|
CWE-89
SQL Injection
|
CVE-2008-3718
|
2017-09-29 10:31 |
2008-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294310
|
- |
|
scripts-for-sites
|
affiliate_directory
|
SQL injection vulnerability in directory.php in SFS Affiliate Directory allows remote attackers to execute arbitrary SQL commands via the id parameter in a deadlink action.
|
CWE-89
SQL Injection
|
CVE-2008-3719
|
2017-09-29 10:31 |
2008-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|