|
291321
|
- |
|
adam_tomecek
|
ownrs
|
SQL injection vulnerability in autor.php in OwnRS CMS 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0384
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291322
|
- |
|
eztools-software
|
web_on_windows_activex
|
Multiple insecure method vulnerabilities in the Web On Windows (WOW) ActiveX control in WOW ActiveX 2 allow remote attackers to (1) create and overwrite arbitrary files via the WriteIniFileString met…
|
NVD-CWE-Other
|
CVE-2009-0389
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291323
|
- |
|
ple_cms
|
ple_cms
|
SQL injection vulnerability in login.php in Pre Lecture Exercises (PLEs) CMS 1.0 beta 4.2 allows remote attackers to execute arbitrary SQL commands via the school parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0394
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291324
|
- |
|
netartmedia
|
car_portal
|
SQL injection vulnerability in the login feature in NetArt Media Car Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
|
CWE-89
SQL Injection
|
CVE-2009-0395
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291325
|
- |
|
gstreamer
|
plug-ins
|
Array index error in the gst_qtp_trak_handler function in gst/qtdemux/qtdemux.c in GStreamer Plug-ins (aka gstreamer-plugins) 0.6.0 allows remote attackers to have an unknown impact via a crafted Qui…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-0398
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291326
|
- |
|
chipmunk_scripts
|
chipmunk_blogger
|
Chipmunk Blogger Script allows remote attackers to gain administrator privileges via a direct request to admin/reguser.php. NOTE: this is only a vulnerability when the administrator does not properl…
|
CWE-16 CWE-264
Configuration Permissions, Privileges, and Access Controls
|
CVE-2009-0399
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291327
|
- |
|
socialengine
|
socialengine
|
SQL injection vulnerability in blog.php in SocialEngine 3.06 trial allows remote attackers to execute arbitrary SQL commands via the category_id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0400
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291328
|
- |
|
chipmunk_scripts
|
chipmunk_blogger
|
SQL injection vulnerability in admin/authenticate.php in Chipmunk Blogger Script allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
|
CWE-89
SQL Injection
|
CVE-2009-0403
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291329
|
- |
|
smartsitecms
|
smartsitecms
|
SQL injection vulnerability in articles.php in smartSite CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the var parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0405
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291330
|
- |
|
community_cms
|
community_cms
|
SQL injection vulnerability in index.php in Community CMS 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0406
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|