|
287901
|
- |
|
bitdefender bullguard software602
|
antivirus bitdefender internet_security groupware_server
|
Unspecified vulnerability in the pdf.xmd module in (1) BitDefender Free Edition 10 and Antivirus Standard 10, (2) BullGuard Internet Security 8.5, and (3) Software602 Groupware Server 6.0.08.1118 all…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5409
|
2017-10-19 10:30 |
2008-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287902
|
- |
|
turnkeyarcade
|
turnkey_arcade_script
|
SQL injection vulnerability in index.php in Turnkey Arcade Script allows remote attackers to execute arbitrary SQL commands via the id parameter in a play action.
|
CWE-89
SQL Injection
|
CVE-2008-5629
|
2017-10-19 10:30 |
2008-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287903
|
- |
|
deltascripts
|
php_shop
|
SQL injection vulnerability in admin/login.php in DeltaScripts PHP Shop 1.0 allows remote attackers to execute arbitrary SQL commands via the admin_username parameter. NOTE: some of these details ar…
|
CWE-89
SQL Injection
|
CVE-2008-5648
|
2017-10-19 10:30 |
2008-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287904
|
- |
|
myiosoft
|
easybookmarker
|
SQL injection vulnerability in plugins/bookmarker/bookmarker_backend.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute arbitrary SQL commands via the Parent parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5651
|
2017-10-19 10:30 |
2008-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287905
|
- |
|
myiosoft.com
|
ajaxportal
|
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands via the rsargs parameter, as reachable through t…
|
CWE-89
SQL Injection
|
CVE-2008-5653
|
2017-10-19 10:30 |
2008-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287906
|
- |
|
myiosoft
|
easycalendar
|
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyCalendar 4.0 allows remote attackers to execute arbitrary SQL commands via the rsargs parameter, as reachable through…
|
CWE-89
SQL Injection
|
CVE-2008-5654
|
2017-10-19 10:30 |
2008-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287907
|
- |
|
ephpscripts
|
e-shop_shopping_cart
|
SQL injection vulnerability in search_results.php in E-Php Scripts E-Shop (aka E-Php Shopping Cart) Shopping Cart Script allows remote attackers to execute arbitrary SQL commands via the cid paramete…
|
CWE-89
SQL Injection
|
CVE-2008-5838
|
2017-10-19 10:30 |
2009-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287908
|
- |
|
phpicalendar
|
phpicalendar
|
admin/index.php in PHP iCalendar 2.3.4, 2.24, and earlier does not require administrative authentication for an addupdate action, which allows remote attackers to upload a calendar (aka .ics) file wi…
|
CWE-287
Improper Authentication
|
CVE-2008-5967
|
2017-10-19 10:30 |
2009-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287909
|
- |
|
phpicalendar
|
phpicalendar
|
Directory traversal vulnerability in print.php in PHP iCalendar 2.24 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cookie_language paramet…
|
CWE-22
Path Traversal
|
CVE-2008-5968
|
2017-10-19 10:30 |
2009-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287910
|
- |
|
hardkap
|
pritlog
|
Directory traversal vulnerability in index.php in Pritlog 0.4 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parame…
|
CWE-22
Path Traversal
|
CVE-2008-6012
|
2017-10-19 10:30 |
2009-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|