|
291921
|
- |
|
adaptcms
|
adaptcms
|
SQL injection vulnerability in the "Check User" feature (includes/check_user.php) in AdaptCMS Lite and AdaptCMS Pro 1.3 allows remote attackers to execute arbitrary SQL commands via the user_name par…
|
CWE-89
SQL Injection
|
CVE-2008-4524
|
2017-09-29 10:32 |
2008-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291922
|
- |
|
customcms
|
ccms
|
Multiple directory traversal vulnerabilities in CCMS 3.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the skin parameter to (1) index.php, (2) forums.php,…
|
CWE-22
Path Traversal
|
CVE-2008-4526
|
2017-09-29 10:32 |
2008-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291923
|
- |
|
php-fusion
|
recepies_module
|
SQL injection vulnerability in recept.php in the Recepies (Recept) module 1.1 for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the kat_id parameter in a kategorier action.…
|
CWE-89
SQL Injection
|
CVE-2008-4527
|
2017-09-29 10:32 |
2008-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291924
|
- |
|
phlatline
|
personal_information_manager
|
Directory traversal vulnerability in notes.php in Phlatline's Personal Information Manager (pPIM) 1.01 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the i…
|
CWE-22
Path Traversal
|
CVE-2008-4528
|
2017-09-29 10:32 |
2008-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291925
|
- |
|
asicms
|
asicms
|
Multiple PHP remote file inclusion vulnerabilities in asiCMS alpha 0.208 allow remote attackers to execute arbitrary PHP code via a URL in the _ENV[asicms][path] parameter to (1) Association.php, (2)…
|
CWE-94
Code Injection
|
CVE-2008-4529
|
2017-09-29 10:32 |
2008-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291926
|
- |
|
dvrstation
|
dvrstation_cms
|
Heap-based buffer overflow in the PdvrAtl.PdvrOcx.1 ActiveX control (pdvratl.dll) in DVRHOST Web CMS OCX 1.0.1.25 allows remote attackers to execute arbitrary code via a long second argument to the T…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4547
|
2017-09-29 10:32 |
2008-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291927
|
- |
|
rtssentry
|
rtssentry
|
Stack-based buffer overflow in the PTZCamPanelCtrl ActiveX control (CamPanel.dll) in RTS Sentry 2.1.0.2 allows remote attackers to execute arbitrary code via a long second argument to the ConnectServ…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4548
|
2017-09-29 10:32 |
2008-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291928
|
- |
|
cutephp
|
cutenews
|
plugins/wacko/highlight/html.php in Strawberry in CuteNews.ru 1.1.1 (aka Strawberry) allows remote attackers to execute arbitrary PHP code via the text parameter, which is inserted into an executable…
|
CWE-94
Code Injection
|
CVE-2008-4557
|
2017-09-29 10:32 |
2008-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291929
|
- |
|
xigla
|
absolute_poll_manager_xe
|
SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to execute arbitrary SQL commands via the p parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4569
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291930
|
- |
|
real-estate-scripts
|
real-estate-scripts
|
SQL injection vulnerability in index.php in Real Estate Classifieds allows remote attackers to execute arbitrary SQL commands via the cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4570
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|