|
284001
|
- |
|
ritecms
|
ritecms
|
Cross-site scripting (XSS) vulnerability in RiteCMS 1.0.0 allows remote authenticated users to inject arbitrary web script or HTML via the mode parameter to cms/index.php.
|
CWE-79
Cross-site Scripting
|
CVE-2013-5317
|
2024-11-21 10:57 |
2013-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284002
|
- |
|
ritecms
|
ritecms
|
Cross-site request forgery (CSRF) vulnerability in RiteCMS 1.0.0 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via an edit…
|
CWE-352
Origin Validation Error
|
CVE-2013-5316
|
2024-11-21 10:57 |
2013-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284003
|
- |
|
ows
|
scald
|
Cross-site scripting (XSS) vulnerability in the Resource Manager in the MEE submodule (mee.module) in the Scald module 6.x-1.x before 6.x-1.0-beta3 and 7.x-1.x before 7.x-1.1 for Drupal allows remote…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5315
|
2024-11-21 10:57 |
2013-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284004
|
- |
|
s9y
|
serendipity
|
Cross-site scripting (XSS) vulnerability in serendipity_admin_image_selector.php in Serendipity 1.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the serendipity[ht…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5314
|
2024-11-21 10:57 |
2013-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284005
|
- |
|
bigtreecms
|
bigtree_cms
|
Cross-site request forgery (CSRF) vulnerability in core/admin/modules/users/update.php in BigTree CMS 4.0 RC2 and earlier allows remote attackers to hijack the authentication of administrators for re…
|
CWE-352
Origin Validation Error
|
CVE-2013-5313
|
2024-11-21 10:57 |
2013-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284006
|
- |
|
vastal
|
phpvid
|
Multiple cross-site scripting (XSS) vulnerabilities in Vastal I-Tech phpVID 1.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) n parameter to browse_videos.php or the (2)…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5312
|
2024-11-21 10:57 |
2013-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284007
|
- |
|
vastal
|
phpvid
|
Multiple SQL injection vulnerabilities in Vastal I-Tech phpVID 1.2.3 allow remote attackers to execute arbitrary SQL commands via the "n" parameter to (1) browse_videos.php or (2) members.php. NOTE:…
|
CWE-89
SQL Injection
|
CVE-2013-5311
|
2024-11-21 10:57 |
2013-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284008
|
- |
|
mauro_lorenzutti
|
wfqbe
|
SQL injection vulnerability in the DB Integration (wfqbe) extension before 2.0.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2013-5310
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284009
|
- |
|
ilia_alshanetsky fudforum
|
fudforum
|
Cross-site scripting (XSS) vulnerability in install/forum_data/src/custom_fields.inc.t in FUDforum 3.0.4.1 and earlier, when registering a new user, allows remote attackers to inject arbitrary web sc…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5309
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284010
|
- |
|
juralsulek
|
realurlmanagement
|
Cross-site scripting (XSS) vulnerability in the RealURL Management (realurlmanagement) extension 0.3.4 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspeci…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5308
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|