|
292151
|
- |
|
pilot_group
|
pg_real_estate_solution
|
SQL injection vulnerability in admin/index.php in PG Real Estate Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter (username). NOTE: some of these details…
|
CWE-89
SQL Injection
|
CVE-2008-5306
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292152
|
- |
|
pilot_group
|
pg_real_roommate_finder_solution
|
SQL injection vulnerability in admin/index.php in PG Roommate Finder Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter. NOTE: some of these details are ob…
|
CWE-89
SQL Injection
|
CVE-2008-5307
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292153
|
- |
|
lovecms
|
the_simple_forum
|
The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct requ…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5308
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292154
|
- |
|
netart_media
|
real_estate_portal
|
SQL injection vulnerability in NetArt Media Real Estate Portal 1.2 allows remote attackers to execute arbitrary SQL commands via the ad_id parameter in the re_send_email module to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-5309
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292155
|
- |
|
netart_media
|
car_portal
|
SQL injection vulnerability in image.php in NetArt Media Car Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5310
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292156
|
- |
|
netart_media
|
blog_system
|
SQL injection vulnerability in image.php in NetArt Media Blog System 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5311
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292157
|
- |
|
clam_anti-virus
|
clamav
|
Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jp…
|
CWE-399
Resource Management Errors
|
CVE-2008-5314
|
2017-09-29 10:32 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292158
|
- |
|
littlecms
|
lcms little_cms_color_engine
|
Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parame…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5316
|
2017-09-29 10:32 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292159
|
- |
|
e107
|
e107
|
SQL injection vulnerability in usersettings.php in e107 0.7.13 and earlier allows remote authenticated users to execute arbitrary SQL commands via the ue[] parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5320
|
2017-09-29 10:32 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292160
|
- |
|
xoops_hocasi
|
gesgaleri
|
SQL injection vulnerability in index.php in GesGaleri, a module for XOOPS, allows remote attackers to execute arbitrary SQL commands via the no parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5321
|
2017-09-29 10:32 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|