|
289701
|
- |
|
kishore_asokan
|
kish_guest_posting_plugin
|
Unrestricted file upload vulnerability in uploadify/scripts/uploadify.php in the Kish Guest Posting plugin 1.2 for WordPress allows remote attackers to execute arbitrary code by uploading a file with…
|
NVD-CWE-Other
|
CVE-2012-5318
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289702
|
- |
|
bigware
|
bigware_shop
|
SQL injection vulnerability in main_bigware_43.php in Bigware Shop before 2.1.5 allows remote attackers to execute arbitrary SQL commands via the lastname parameter in a process action.
|
CWE-89
SQL Injection
|
CVE-2012-5317
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289703
|
- |
|
barracudanetworks
|
spam_\&_virus_firewall_600_firmware spam_\&_virus_firewall_600
|
Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Spam & Virus Firewall 600 Firmware 4.0.1.009 and earlier allow remote authenticated users to inject arbitrary web script or HTML via (…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5316
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289704
|
- |
|
php_ireport_project
|
php_ireport
|
Multiple cross-site scripting (XSS) vulnerabilities in php ireport 1.0 allow remote attackers to inject arbitrary web script or HTML via the message parameter to (1) messages_viewer.php, (2) home.php…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5315
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289705
|
- |
|
heikki_hokkanen
|
viewgit
|
Cross-site scripting (XSS) vulnerability in ViewGit 0.0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the f parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-5314
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289706
|
- |
|
snitz_communications
|
snitz_forums_2000
|
SQL injection vulnerability in forum.asp in Snitz Forums 2000 allows remote attackers to execute arbitrary SQL commands via the TOPIC_ID parameter.
|
CWE-89
SQL Injection
|
CVE-2012-5313
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289707
|
- |
|
tribiq
|
tribiq_cms
|
SQL injection vulnerability in Tribiq CMS allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2012-5312
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289708
|
- |
|
getshopped
|
wp_e-commerce
|
SQL injection vulnerability in the WP e-Commerce plugin before 3.8.7.6 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2012-5310
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289709
|
- |
|
ibm
|
lotus_notes_traveler
|
servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim Fix 1 does not properly restrict invalid authentication attempts, which makes it easier for remote attackers to obtain access via …
|
CWE-287
Improper Authentication
|
CVE-2012-5309
|
2024-11-21 10:44 |
2012-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289710
|
- |
|
ibm
|
lotus_notes_traveler
|
Cross-site request forgery (CSRF) vulnerability in servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim Fix 1 allows remote attackers to hijack the authentication of arbitrary users f…
|
CWE-352
Origin Validation Error
|
CVE-2012-5308
|
2024-11-21 10:44 |
2012-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|