|
291451
|
- |
|
supernet
|
supernet_shop
|
Multiple SQL injection vulnerabilities in SuperNET Shop 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to secure/admin/guncelle.asp, (2) kulad and s…
|
CWE-89
SQL Injection
|
CVE-2008-6204
|
2017-09-29 10:33 |
2009-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291452
|
- |
|
vastal
|
software_zone
|
SQL injection vulnerability in view_product.php in Vastal I-Tech Software Zone allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6209
|
2017-09-29 10:33 |
2009-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291453
|
- |
|
dream4
|
koobi
|
SQL injection vulnerability in index.php in dream4 Koobi 4.4 and 5.4 allows remote attackers to execute arbitrary SQL commands via the img_id parameter in the gallerypic page.
|
CWE-89
SQL Injection
|
CVE-2008-6210
|
2017-09-29 10:33 |
2009-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291454
|
- |
|
harlandscripts
|
pro_traffic_one
|
SQL injection vulnerability in mypage.php in Harlandscripts Pro Traffic One allows remote attackers to execute arbitrary SQL commands via the trg parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6213
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291455
|
- |
|
harlandscripts
|
pro_traffic_one
|
SQL injection vulnerability in poll_results.php in Harlandscripts Pro Traffic One allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6214
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291456
|
- |
|
bookingcentre
|
booking_system_for_hotels_group
|
Cross-site scripting (XSS) vulnerability in cadena_ofertas_ext.php in Venalsur Booking Centre Booking System for Hotels Group allows remote attackers to inject arbitrary web script or HTML via the Of…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6215
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291457
|
- |
|
bookingcentre
|
booking_system_for_hotels_group
|
SQL injection vulnerability in cadena_ofertas_ext.php in Venalsur Booking Centre Booking System for Hotels Group allows remote attackers to execute arbitrary SQL commands via the OfertaID parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6216
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291458
|
- |
|
cafuego
|
simple_document_management_system
|
SQL injection vulnerability in login.php in Simple Document Management System (SDMS) 1.1.5 and 1.1.4, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the pass para…
|
CWE-89
SQL Injection
|
CVE-2008-6220
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291459
|
- |
|
dadamailproject
|
dada_mail_manager
|
PHP remote file inclusion vulnerability in config.dadamail.php in the Dada Mail Manager (com_dadamail) component 2.6 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the…
|
CWE-94
Code Injection
|
CVE-2008-6221
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291460
|
- |
|
preproject
|
php_auto_listings_script
|
SQL injection vulnerability in moreinfo.php in Pre Projects PHP Auto Listings Script, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the itemno param…
|
CWE-89
SQL Injection
|
CVE-2008-6226
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|