|
293071
|
- |
|
phpauctions
|
phpauction_gpl_enhanced
|
SQL injection vulnerability in profile.php in PHPAuction GPL Enhanced 2.51 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3487
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293072
|
- |
|
phpx
|
phpx
|
SQL injection vulnerability in checkCookie function in includes/functions.inc.php in PHPX 3.5.16 allows remote attackers to execute arbitrary SQL commands via a PXL cookie.
|
CWE-89
SQL Injection
|
CVE-2008-3489
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293073
|
- |
|
e-topbiz
|
online_dating
|
SQL injection vulnerability in members/mail.php in E-topbiz Online Dating 3 1.0 allows remote authenticated users to execute arbitrary SQL commands via the mail_id parameter in a veiw action.
|
CWE-89
SQL Injection
|
CVE-2008-3490
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293074
|
- |
|
scripts24
|
ipost itgp
|
SQL injection vulnerability in go.php in Scripts24 iPost 1.0.1 and iTGP 1.0.4 allows remote attackers to execute arbitrary SQL commands via the id parameter in a report action.
|
CWE-89
SQL Injection
|
CVE-2008-3491
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293075
|
- |
|
realvnc
|
realvnc_windows_client
|
vncviewer.exe in RealVNC Windows Client 4.1.2.0 allows remote VNC servers to cause a denial of service (application crash) via a crafted frame buffer update packet.
|
CWE-20
Improper Input Validation
|
CVE-2008-3493
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293076
|
- |
|
myphp_cms
|
myphp_cms
|
SQL injection vulnerability in pages.php in MyPHP CMS 0.3.1 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3497
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293077
|
- |
|
polypager
|
polypager
|
Cross-site scripting (XSS) vulnerability in PolyPager 1.0 rc2 and earlier allows remote attackers to inject arbitrary web script or HTML via the nr parameter to the default URI.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3505
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293078
|
- |
|
polypager
|
polypager
|
SQL injection vulnerability in PolyPager 1.0 rc2 and earlier allows remote attackers to execute arbitrary SQL commands via the nr parameter to the default URI.
|
CWE-89
SQL Injection
|
CVE-2008-3506
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293079
|
- |
|
wogan_may
|
litenews
|
SQL injection vulnerability in index.php in LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action.
|
CWE-89
SQL Injection
|
CVE-2008-3507
|
2017-09-29 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293080
|
- |
|
wogan_may
|
litenews
|
LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3508
|
2017-09-29 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|