|
292281
|
- |
|
syndeocms
|
syndeocms
|
Solution:
Update to version 2.6.02.
http://sourceforge.net/project/showfi...ckage_id=220740&release_id=610817
|
CWE-22
Path Traversal
|
CVE-2008-5272
|
2017-09-29 10:32 |
2008-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292282
|
- |
|
toddwoolums
|
todd_woolums_asp_news_management
|
SQL injection vulnerability in viewnews.asp in Todd Woolums ASP News Management 2.2 allows remote attackers to execute arbitrary SQL commands via the newsID parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5273
|
2017-09-29 10:32 |
2008-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292283
|
- |
|
apple
|
cups
|
Integer overflow in the _cupsImageReadPNG function in CUPS 1.1.17 through 1.3.9 allows remote attackers to execute arbitrary code via a PNG image with a large height value, which bypasses a validatio…
|
CWE-189
Numeric Errors
|
CVE-2008-5286
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292284
|
- |
|
scripts4you
|
faq_manager
|
SQL injection vulnerability in catagorie.php in Werner Hilversum FAQ Manager 1.2 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5287
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292285
|
- |
|
scripts4you
|
faq_manager
|
PHP remote file inclusion vulnerability in include/header.php in Werner Hilversum FAQ Manager 1.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in…
|
CWE-94
Code Injection
|
CVE-2008-5288
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292286
|
- |
|
scripts4you
|
clean_cms
|
SQL injection vulnerability in full_txt.php in Werner Hilversum Clean CMS 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5289
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292287
|
- |
|
scripts4you
|
clean_cms
|
Cross-site scripting (XSS) vulnerability in full_txt.php in Werner Hilversum Clean CMS 1.5 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5290
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292288
|
- |
|
fuzzylime
|
fuzzylime_cms
|
Directory traversal vulnerability in code/track.php in FuzzyLime 3.03 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the p parameter, a diff…
|
CWE-22
Path Traversal
|
CVE-2008-5291
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292289
|
- |
|
videogirls
|
videogirls_biz
|
SQL injection vulnerability in view_snaps.php in VideoGirls BiZ allows remote attackers to execute arbitrary SQL commands via the type parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5292
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292290
|
- |
|
bdigital_web_solutions
|
webstudio_ehotel
|
SQL injection vulnerability in index.php in WebStudio eHotel allows remote attackers to execute arbitrary SQL commands via the pageid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5293
|
2017-09-29 10:32 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|