|
287861
|
- |
|
runcms
|
runcms
|
SQL injection vulnerability in index.php in the Newbb_plus 0.92 and earlier module in RunCMS 1.6.1 allows remote attackers to execute arbitrary SQL commands via the Client-Ip parameter.
|
CWE-89
SQL Injection
|
CVE-2008-0224
|
2017-10-19 10:30 |
2008-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287862
|
- |
|
blog_cms
|
blog_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in BLOG:CMS 4.2.1b allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin.php or (2) index.php in photo/.
|
CWE-79
Cross-site Scripting
|
CVE-2008-0359
|
2017-10-19 10:30 |
2008-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287863
|
- |
|
blog_cms
|
blog_cms
|
Multiple SQL injection vulnerabilities in BLOG:CMS 4.2.1b allow remote attackers to execute arbitrary SQL commands via (1) the blogid parameter to index.php, (2) the user parameter to action.php, or …
|
CWE-89
SQL Injection
|
CVE-2008-0360
|
2017-10-19 10:30 |
2008-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287864
|
- |
|
highwood_design
|
hwdvideoshare
|
SQL injection vulnerability in the Highwood Design hwdVideoShare (com_hwdvideoshare) 1.1.3 Alpha component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_id parame…
|
CWE-89
SQL Injection
|
CVE-2008-0916
|
2017-10-19 10:30 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287865
|
- |
|
arwscripts
|
gallery_script_lite
|
Directory traversal vulnerability in download.html in ARWScripts Gallery Script Lite (aka gallery-script-lite or Free Photo Gallery Site Script), as of 20080411, allows remote attackers to read arbit…
|
CWE-22
Path Traversal
|
CVE-2008-1730
|
2017-10-19 10:30 |
2008-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287866
|
- |
|
prozilla
|
entertainers
|
SQL injection vulnerability in directory.php in Prozilla Entertainers 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: some of these details are…
|
CWE-89
SQL Injection
|
CVE-2008-1788
|
2017-10-19 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287867
|
- |
|
kevin_ludlow
|
austinsmoke_gastracker
|
AustinSmoke GasTracker (AS-GasTracker) 1.0.0 allows remote attackers to bypass authentication and gain privileges by setting the gastracker_admin cookie to TRUE.
|
CWE-287
Improper Authentication
|
CVE-2008-2269
|
2017-10-19 10:30 |
2008-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287868
|
- |
|
joomla
|
com_simpleshop joomla
|
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a bro…
|
CWE-89
SQL Injection
|
CVE-2008-2568
|
2017-10-19 10:30 |
2008-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287869
|
- |
|
joomla rapid-source
|
com_rapidrecipe rapid_recipe
|
SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a view…
|
CWE-89
SQL Injection
|
CVE-2008-2697
|
2017-10-19 10:30 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287870
|
- |
|
aspindir
|
shibby_shop
|
SQL injection vulnerability in default.asp in sHibby sHop 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via the sayfa parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2872
|
2017-10-19 10:30 |
2008-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|