|
292771
|
- |
|
psychostats
|
psychostats
|
Multiple SQL injection vulnerabilities in PsychoStats 2.3, 2.3.1, and 2.3.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) weapon.php and (2) map.php.
|
CWE-89
SQL Injection
|
CVE-2008-6422
|
2017-09-29 10:33 |
2009-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292772
|
- |
|
i-apps
|
passwiki
|
Directory traversal vulnerability in passwiki.php in PassWiki 0.9.16 RC3 and earlier allows remote attackers to read arbitrary local files via a .. (dot dot) in the site_id parameter.
|
CWE-22
Path Traversal
|
CVE-2008-6423
|
2017-09-29 10:33 |
2009-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292773
|
- |
|
comicshout
|
comicshout
|
SQL injection vulnerability in news.php in ComicShout 2.8 allows remote attackers to execute arbitrary SQL commands via the news_id parameter, a different vector than CVE-2008-2456.
|
CWE-89
SQL Injection
|
CVE-2008-6425
|
2017-09-29 10:33 |
2009-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292774
|
- |
|
mike_leeper
|
com_prayercenter
|
SQL injection vulnerability in the PrayerCenter (com_prayercenter) component 1.4.9 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view_req…
|
CWE-89
SQL Injection
|
CVE-2008-6429
|
2017-09-29 10:33 |
2009-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292775
|
- |
|
joomla
|
com_mycontent
|
SQL injection vulnerability in the MyContent (com_mycontent) component 1.1.13 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-6430
|
2017-09-29 10:33 |
2009-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292776
|
- |
|
geniuscyber
|
maxsite
|
Static code injection vulnerability in the Guestbook component in CMS MAXSITE allows remote attackers to inject arbitrary PHP code into the guestbook via the message parameter.
|
CWE-94
Code Injection
|
CVE-2008-6446
|
2017-09-29 10:33 |
2009-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292777
|
- |
|
quiksoft
|
easymail_mailstore_object
|
Buffer overflow in emmailstore.dll 6.5.0.3 in the QuikSoft EasyMail MailStore ActiveX control allows remote attackers to execute arbitrary code via a long first argument to the CreateStore method.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-6447
|
2017-09-29 10:33 |
2009-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292778
|
- |
|
jportal
|
jportal
|
SQL injection vulnerability in humor.php in jPORTAL 2 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: this might overlap CVE-2004-2036 or CVE-2005-3509.
|
CWE-89
SQL Injection
|
CVE-2008-6451
|
2017-09-29 10:33 |
2009-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292779
|
- |
|
oceandir
|
oceandir
|
SQL injection vulnerability in show_vote.php in Oceandir 2.9 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6452
|
2017-09-29 10:33 |
2009-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292780
|
- |
|
6rbscript
|
6rbscript
|
Directory traversal vulnerability in section.php in 6rbScript 3.3, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.
|
CWE-22
Path Traversal
|
CVE-2008-6453
|
2017-09-29 10:33 |
2009-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|