|
302461
|
- |
|
2daybiz
|
network_community_script
|
SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arbitrary SQL commands via the alb parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5015
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302462
|
- |
|
eliteladders
|
elite_gaming_ladders
|
SQL injection vulnerability in standings.php in Elite Gaming Ladders 3.5 allows remote attackers to execute arbitrary SQL commands via the ladder[id] parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5014
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302463
|
- |
|
mckenziecreations
|
virtual_real_estate_manager
|
SQL injection vulnerability in listing_detail.asp in Mckenzie Creations Virtual Real Estate Manager (VRM) 3.5 allows remote attackers to execute arbitrary SQL commands via the Lid parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5013
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302464
|
- |
|
david_noguera_gutierrez
|
dalogin
|
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third pa…
|
CWE-89
SQL Injection
|
CVE-2010-5012
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302465
|
- |
|
schoolmation
|
schoolmation
|
SQL injection vulnerability in schoolmv2/html/studentmain.php in SchoolMation 2.3 allows remote attackers to execute arbitrary SQL commands via the session parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5011
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302466
|
- |
|
schoolmation
|
schoolmation
|
Cross-site scripting (XSS) vulnerability in schoolmv2/html/studentmain.php in SchoolMation 2.3 allows remote attackers to inject arbitrary web script or HTML via the session parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5010
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302467
|
- |
|
ut-files
|
utstats
|
SQL injection vulnerability in index.php in UTStats Beta 4 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter in a matchp action.
|
CWE-89
SQL Injection
|
CVE-2010-5009
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302468
|
- |
|
denaliintranet
|
brightsuite_groupware
|
SQL injection vulnerability in pages/contact_list_mail_form.asp in BrightSuite Groupware 5.4 allows remote attackers to execute arbitrary SQL commands via the ContactID parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5008
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302469
|
- |
|
ut-files
|
utstats
|
Cross-site scripting (XSS) vulnerability in pages/match_report.php in UTStats Beta 4 and earlier allows remote attackers to inject arbitrary web script or HTML via the mid parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5007
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302470
|
- |
|
emophp
|
emo_realty_manager
|
SQL injection vulnerability in googlemap/index.php in EMO Realty Manager allows remote attackers to execute arbitrary SQL commands via the cat1 parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5006
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|