|
294131
|
- |
|
phpmotion
|
phpmotion
|
RETIRED: Information from the vendor and further analysis show that the application is not affected by these issues.
|
CWE-89
SQL Injection
|
CVE-2008-3118
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294132
|
- |
|
dreamlevels
|
dream_pics_builder
|
SQL injection vulnerability in index.php in DreamPics Builder allows remote attackers to execute arbitrary SQL commands via the page parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3119
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294133
|
- |
|
mole_group
|
real_estate_script
|
SQL injection vulnerability in index.php in Mole Group Real Estate Script 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the listing_id parameter in a listings action.
|
CWE-89
SQL Injection
|
CVE-2008-3123
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294134
|
- |
|
mole_group
|
hotel_script
|
SQL injection vulnerability in index.php in Mole Group Hotel Script 1.0 allows remote attackers to execute arbitrary SQL commands via the file parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3124
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294135
|
- |
|
hiox_india
|
banner_rotator
|
PHP remote file inclusion vulnerability in hioxBannerRotate.php in HIOX Banner Rotator (HBR) 1.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in …
|
CWE-20
Improper Input Validation
|
CVE-2008-3127
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294136
|
- |
|
pivot
|
pivot
|
Directory traversal vulnerability in search.php in Pivot 1.40.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the t parameter.
|
CWE-22
Path Traversal
|
CVE-2008-3128
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294137
|
- |
|
powie
|
psys
|
SQL injection vulnerability in chatbox.php in pSys 0.7.0 Alpha, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the showid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3131
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294138
|
- |
|
joomla
|
com_beamospetition
|
SQL injection vulnerability in the beamospetition (com_beamospetition) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the pet parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-3132
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294139
|
- |
|
barenuked
|
barenuked_cms
|
SQL injection vulnerability in admin/index.php in BareNuked CMS 1.1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the password parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3133
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294140
|
- |
|
ashopsoftware
|
ashop_deluxe
|
SQL injection vulnerability in catalogue.php in AShop Deluxe 4.x allows remote attackers to execute arbitrary SQL commands via the cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3136
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|