|
292251
|
- |
|
philboard
|
philboard
|
SQL injection vulnerability in forum.asp in W1L3D4 Philboard 1.14 and 1.2 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. NOTE: this might overlap CVE-2008-2334,…
|
CWE-89
SQL Injection
|
CVE-2008-5192
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292252
|
- |
|
philboard
|
philboard
|
Cross-site scripting (XSS) vulnerability in search.asp in W1L3D4 Philboard 1.14 and 1.2 allows remote attackers to inject arbitrary web script or HTML via the searchterms parameter. NOTE: this might…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5193
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292253
|
- |
|
softvisions_software
|
online_booking_manager
|
SQL injection vulnerability in checkavail.php in SoftVisions Software Online Booking Manager (obm) 2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5194
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292254
|
- |
|
sebrac
|
sebraccms
|
Multiple SQL injection vulnerabilities in SebracCMS (sbcms) 0.4 allow remote attackers to execute arbitrary SQL commands via (1) the recid parameter to cms/form/read.php, (2) the uname parameter to c…
|
CWE-89
SQL Injection
|
CVE-2008-5195
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292255
|
- |
|
php-fusion
|
the_kroax_module
|
SQL injection vulnerability in kroax.php in the Kroax (the_kroax) 4.42 and earlier module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the category parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5196
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292256
|
- |
|
joomla
|
com_xewebtv
|
SQL injection vulnerability in the Xe webtv (com_xewebtv) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-5200
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292257
|
- |
|
otmanager
|
otmanager_cms
|
Directory traversal vulnerability in index.php in OTManager CMS 24a allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conteudo parameter. NOTE: in some e…
|
CWE-22
Path Traversal
|
CVE-2008-5201
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292258
|
- |
|
otmanager
|
otmanager_cms
|
Cross-site scripting (XSS) vulnerability in index.php in OTManager CMS 24a allows remote attackers to inject arbitrary web script or HTML via the conteudo parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5202
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292259
|
- |
|
poweraward
|
poweraward
|
Cross-site scripting (XSS) vulnerability in external_vote.php in PowerAward 1.1.0 RC1 allows remote attackers to inject arbitrary web script or HTML via the l_vote_done parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5203
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292260
|
- |
|
poweraward
|
poweraward
|
Multiple directory traversal vulnerabilities in PowerAward 1.1.0 RC1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal seq…
|
CWE-22
Path Traversal
|
CVE-2008-5204
|
2017-09-29 10:32 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|