|
284271
|
- |
|
publicwarehouse
|
lightblog
|
Directory traversal vulnerability in view_member.php in Public Warehouse LightBlog 9.6 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the username paramete…
|
CWE-22
Path Traversal
|
CVE-2008-0840
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284272
|
- |
|
statcountex
|
statcountex
|
StatCounteX 3.0 and 3.1 allows remote attackers to obtain sensitive information and edit configuration scripts via a direct request to admin.asp.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-0843
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284273
|
- |
|
wordpress
|
dean_logan_wp-people_plugin
|
SQL injection vulnerability in wp-people-popup.php in Dean Logan WP-People plugin 1.6.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the person parameter.
|
CWE-89
SQL Injection
|
CVE-2008-0845
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284274
|
- |
|
xoops
|
mytopics
|
SQL injection vulnerability in print.php in the myTopics module for XOOPS allows remote attackers to execute arbitrary SQL commands via the articleid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-0847
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284275
|
- |
|
crafty_syntax_live_help
|
crafty_syntax_live_help
|
Cross-site scripting (XSS) vulnerability in lostsheep.php in Crafty Syntax Live Help (CSLH) before 2.14.16, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NO…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0848
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284276
|
- |
|
joomla mambo
|
com_downloads
|
SQL injection vulnerability in index.php in the Downloads (com_downloads) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectca…
|
CWE-89
SQL Injection
|
CVE-2008-0849
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284277
|
- |
|
dokeos
|
dokeos
|
Multiple SQL injection vulnerabilities in Dokeos 1.8.4 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to whoisonline.php, (2) tracking_list_coaches_column parameter…
|
CWE-89
SQL Injection
|
CVE-2008-0850
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284278
|
- |
|
dokeos
|
e-learning_system
|
Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to inscription.php, (2) courseCode par…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0851
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284279
|
- |
|
freesshd
|
freesshd
|
freeSSHd 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a SSH2_MSG_NEWKEYS packet to TCP port 22, which triggers a NULL pointer dereference.
|
NVD-CWE-Other
|
CVE-2008-0852
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284280
|
- |
|
joomla mambo
|
com_detail
|
SQL injection vulnerability in the com_detail component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. NOTE: this issue might be s…
|
CWE-89
SQL Injection
|
CVE-2008-0853
|
2018-10-16 07:03 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|