|
299041
|
- |
|
webmanager-pro
|
cms_webmanager-pro
|
SQL injection vulnerability in c.php in CMS WebManager-Pro before 8.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4899
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299042
|
- |
|
gantry-framework
|
com_gantry
|
SQL injection vulnerability in the Gantry (com_gantry) component 3.0.10 for Joomla! allows remote attackers to execute arbitrary SQL commands via the moduleid parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2010-4898
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299043
|
- |
|
bluecms_project
|
bluecms
|
SQL injection vulnerability in comment.php in BlueCMS 1.6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header in a send action.
|
CWE-89
SQL Injection
|
CVE-2010-4897
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299044
|
- |
|
expinion.net
|
member_management_system
|
Cross-site scripting (XSS) vulnerability in admin/index.asp in Member Management System 4.0 allows remote attackers to inject arbitrary web script or HTML via the REF_URL parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4896
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299045
|
- |
|
chillycms
|
chillycms
|
Cross-site scripting (XSS) vulnerability in core/showsite.php in chillyCMS 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the username field). NOTE:…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4895
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299046
|
- |
|
chillycms
|
chillycms
|
SQL injection vulnerability in core/showsite.php in chillyCMS 1.1.3 allows remote attackers to execute arbitrary SQL commands via the name parameter. NOTE: some of these details are obtained from th…
|
CWE-89
SQL Injection
|
CVE-2010-4894
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299047
|
- |
|
festengine
|
festos
|
Cross-site scripting (XSS) vulnerability in foodvendors.php in FestOS 2.3b allows remote attackers to inject arbitrary web script or HTML via the category parameter in a details action.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4893
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299048
|
- |
|
alex_kellner
|
powermail
|
Cross-site scripting (XSS) vulnerability in the powermail extension before 1.5.5 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4892
|
2024-11-21 10:22 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299049
|
- |
|
andreas_kiefer
|
ke_yac
|
SQL injection vulnerability in the Yet Another Calendar (ke_yac) extension before 1.1.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4891
|
2024-11-21 10:22 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299050
|
- |
|
andreas_kiefer
|
ke_yac
|
Cross-site scripting (XSS) vulnerability in the Yet Another Calendar (ke_yac) extension before 1.1.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4890
|
2024-11-21 10:22 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|