|
292571
|
- |
|
eztools-software
|
web_on_windows_activex
|
Multiple insecure method vulnerabilities in the Web On Windows (WOW) ActiveX control in WOW ActiveX 2 allow remote attackers to (1) create and overwrite arbitrary files via the WriteIniFileString met…
|
NVD-CWE-Other
|
CVE-2009-0389
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292572
|
- |
|
ple_cms
|
ple_cms
|
SQL injection vulnerability in login.php in Pre Lecture Exercises (PLEs) CMS 1.0 beta 4.2 allows remote attackers to execute arbitrary SQL commands via the school parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0394
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292573
|
- |
|
netartmedia
|
car_portal
|
SQL injection vulnerability in the login feature in NetArt Media Car Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
|
CWE-89
SQL Injection
|
CVE-2009-0395
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292574
|
- |
|
gstreamer
|
plug-ins
|
Array index error in the gst_qtp_trak_handler function in gst/qtdemux/qtdemux.c in GStreamer Plug-ins (aka gstreamer-plugins) 0.6.0 allows remote attackers to have an unknown impact via a crafted Qui…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-0398
|
2017-09-29 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292575
|
- |
|
chipmunk_scripts
|
chipmunk_blogger
|
Chipmunk Blogger Script allows remote attackers to gain administrator privileges via a direct request to admin/reguser.php. NOTE: this is only a vulnerability when the administrator does not properl…
|
CWE-16 CWE-264
Configuration Permissions, Privileges, and Access Controls
|
CVE-2009-0399
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292576
|
- |
|
socialengine
|
socialengine
|
SQL injection vulnerability in blog.php in SocialEngine 3.06 trial allows remote attackers to execute arbitrary SQL commands via the category_id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0400
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292577
|
- |
|
chipmunk_scripts
|
chipmunk_blogger
|
SQL injection vulnerability in admin/authenticate.php in Chipmunk Blogger Script allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
|
CWE-89
SQL Injection
|
CVE-2009-0403
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292578
|
- |
|
smartsitecms
|
smartsitecms
|
SQL injection vulnerability in articles.php in smartSite CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the var parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0405
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292579
|
- |
|
community_cms
|
community_cms
|
SQL injection vulnerability in index.php in Community CMS 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0406
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292580
|
- |
|
humayun_shabbir
|
php-cms_project
|
SQL injection vulnerability in admin/login.php in PHP-CMS Project 1 allows remote attackers to execute arbitrary SQL commands via the username parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0407
|
2017-09-29 10:33 |
2009-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|