|
291461
|
- |
|
preproject
|
pre_multi-vendor_shopping_malls
|
SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.
|
CWE-89
SQL Injection
|
CVE-2008-6227
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291462
|
- |
|
preproject
|
pre_multi-vendor_shopping_malls
|
Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
|
CWE-255
Credentials Management
|
CVE-2008-6228
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291463
|
- |
|
preprojects
|
pre_podcast_portal
|
SQL injection vulnerability in Tour.php in Pre Projects Pre Podcast Portal allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6230
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291464
|
- |
|
preprojects
|
pre_classified_listings
|
Pre Classified Listing PHP allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
|
CWE-255
Credentials Management
|
CVE-2008-6231
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291465
|
- |
|
preprojects
|
pre_shopping_mall
|
Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
|
CWE-255
Credentials Management
|
CVE-2008-6232
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291466
|
- |
|
fivedollarscripts
|
drinks
|
SQL injection vulnerability in index.php in Five Dollar Scripts Drinks script allows remote attackers to execute arbitrary SQL commands via the recid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6233
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291467
|
- |
|
vim
|
vim
|
The Netrw plugin (netrw.vim) in Vim 7.0 and 7.1 allows user-assisted attackers to execute arbitrary commands via shell metacharacters in a filename used by the (1) "D" (delete) command or (2) b:netrw…
|
CWE-78
OS Command
|
CVE-2008-6235
|
2017-09-29 10:33 |
2009-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291468
|
- |
|
scripts-for-sites
|
hotscripts-like_site
|
SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6237
|
2017-09-29 10:33 |
2009-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291469
|
- |
|
china-on-site
|
flexphpsite
|
Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPSite 0.0.1 and 0.0.7, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the c…
|
CWE-89
SQL Injection
|
CVE-2008-6241
|
2017-09-29 10:33 |
2009-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291470
|
- |
|
scripts-for-sites
|
ez_e-store
|
SQL injection vulnerability in SearchResults.php in Scripts For Sites (SFS) EZ e-store allows remote attackers to execute arbitrary SQL commands via the where parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6242
|
2017-09-29 10:33 |
2009-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|