|
283461
|
- |
|
webblizzard
|
content_management_system
|
Cross-site scripting (XSS) vulnerability in index_cms.php in WebBlizzard CMS allows remote attackers to inject arbitrary web script or HTML via the Suchzeile parameter.
|
NVD-CWE-Other
|
CVE-2007-1950
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283462
|
- |
|
onelook
|
oboshop
|
Session fixation vulnerability in onelook obo Shop allows remote attackers to hijack web sessions by setting a PHPSESSID cookie.
|
CWE-287
Improper Authentication
|
CVE-2007-1951
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283463
|
- |
|
onelook
|
onebyone_cms
|
Session fixation vulnerability in onelook onebyone CMS allows remote attackers to hijack web sessions by setting a PHPSESSID cookie.
|
CWE-287
Improper Authentication
|
CVE-2007-1952
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283464
|
- |
|
onelook
|
courts_online
|
Session fixation vulnerability in onelook courts on-line allows remote attackers to hijack web sessions by setting a PHPSESSID cookie.
|
CWE-287
Improper Authentication
|
CVE-2007-1953
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283465
|
- |
|
ubbcentral
|
ubb.threads
|
SQL injection vulnerability in ubbthreads.php in Groupee UBB.threads 6.1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the C parameter.
|
NVD-CWE-Other
|
CVE-2007-1956
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283466
|
- |
|
guernion_sylvain_portail
|
web_php
|
Multiple PHP remote file inclusion vulnerabilities in Guernion Sylvain Portail Web Php (aka Gsylvain35 Portail Web, PwP) allow remote attackers to execute arbitrary PHP code via a URL in the pageAll …
|
NVD-CWE-Other
|
CVE-2007-1957
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283467
|
- |
|
mybb mybulletinboard
|
mybb mybulletinboard
|
SQL injection vulnerability in the create_session function in class_session.php in MyBB (aka MyBulletinBoard) 1.2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Clien…
|
NVD-CWE-Other
|
CVE-2007-1963
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283468
|
- |
|
mybb mybulletinboard
|
mybb mybulletinboard
|
member.php in MyBB (aka MyBulletinBoard), when debug mode is available, allows remote authenticated users to change the password of any account by providing the account's registered e-mail address in…
|
NVD-CWE-Other
|
CVE-2007-1964
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283469
|
- |
|
sam_crew
|
myblog
|
PHP remote file inclusion vulnerability in games.php in Sam Crew MyBlog, possibly 1.0 through 1.6, allows remote attackers to execute arbitrary PHP code via a URL in the scoreid parameter.
|
NVD-CWE-Other
|
CVE-2007-1968
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283470
|
- |
|
sam_crew
|
myblog
|
Cross-site scripting (XSS) vulnerability in admin/modify.php in Sam Crew MyBlog remote attackers to inject arbitrary web script or HTML via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1969
|
2018-10-17 01:41 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|