|
293841
|
- |
|
ircmaxell
|
tech_article
|
SQL injection vulnerability in the Tech Articles (com_tech_article) 1.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the item parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-6050
|
2017-09-29 10:32 |
2009-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293842
|
- |
|
liberum
|
liberum_help_desk
|
Doug Luxem Liberum Help Desk 0.97.3 stores db/helpdesk2000.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-6057
|
2017-09-29 10:32 |
2009-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293843
|
- |
|
domphp
|
domphp
|
Multiple SQL injection vulnerabilities in DomPHP 0.81 allow remote attackers to execute arbitrary SQL commands via the cat parameter to agenda/index.php, and unspecified other vectors.
|
CWE-89
SQL Injection
|
CVE-2008-6064
|
2017-09-29 10:32 |
2009-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293844
|
- |
|
web_design_hero
|
joomladate
|
SQL injection vulnerability in the JoomlaDate (com_joomladate) component 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the user parameter in a viewProfile action to in…
|
CWE-89
SQL Injection
|
CVE-2008-6068
|
2017-09-29 10:32 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293845
|
- |
|
jlleblanc
|
com_dailymessage
|
SQL injection vulnerability in the Daily Message (com_dailymessage) 1.0.3 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-6076
|
2017-09-29 10:32 |
2009-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293846
|
- |
|
loudblog
|
loudblog
|
SQL injection vulnerability in loudblog/ajax.php in LoudBlog 0.8.0a and earlier allows remote authenticated users to execute arbitrary SQL commands via the colpick parameter in a singleread action.
|
CWE-89
SQL Injection
|
CVE-2008-6077
|
2017-09-29 10:32 |
2009-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293847
|
- |
|
limbo_cms
|
com_privmsg
|
SQL injection vulnerability in open.php in the Private Messaging (com_privmsg) component for Limbo CMS allows remote attackers to execute arbitrary SQL commands via the id parameter in a pms action t…
|
CWE-89
SQL Injection
|
CVE-2008-6078
|
2017-09-29 10:32 |
2009-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293848
|
- |
|
codecall
|
com_ionfiles
|
Directory traversal vulnerability in download.php in the ionFiles (com_ionfiles) 4.4.2 component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
|
CWE-22
Path Traversal
|
CVE-2008-6080
|
2017-09-29 10:32 |
2009-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293849
|
- |
|
simplecustomer
|
simple_customer
|
SQL injection vulnerability in contact.php in Simple Customer 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6081
|
2017-09-29 10:32 |
2009-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293850
|
- |
|
southrivertech
|
titan_ftp_server
|
Titan FTP Server 6.26 build 630 allows remote attackers to cause a denial of service (CPU consumption) via the SITE WHO command.
|
CWE-399
Resource Management Errors
|
CVE-2008-6082
|
2017-09-29 10:32 |
2009-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|