|
298801
|
- |
|
ypninc
|
jokescript
|
SQL injection vulnerability in index.php in YPNinc JokeScript allows remote attackers to execute arbitrary SQL commands via the ypncat_id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4972
|
2024-11-21 10:22 |
2011-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298802
|
- |
|
wikiwebhelp
|
wiki_web_help
|
SQL injection vulnerability in handlers/getpage.php in Wiki Web Help 0.28 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4970
|
2024-11-21 10:22 |
2011-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298803
|
- |
|
brotherscripts
|
business_directory
|
SQL injection vulnerability in articlesdetails.php in BrotherScripts (BS) Business Directory allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4969
|
2024-11-21 10:22 |
2011-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298804
|
- |
|
webmaster-tips
|
com_wmtpic
|
SQL injection vulnerability in the webmaster-tips.net Flash Gallery (com_wmtpic) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.…
|
CWE-89
SQL Injection
|
CVE-2010-4968
|
2024-11-21 10:22 |
2011-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298805
|
- |
|
atcom
|
netvolution
|
SQL injection vulnerability in default.asp in ATCOM Netvolution 2.5.6 allows remote attackers to execute arbitrary SQL commands via the artID parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4967
|
2024-11-21 10:22 |
2011-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298806
|
- |
|
atcom
|
netvolution
|
Cross-site scripting (XSS) vulnerability in default.asp in ATCOM Netvolution allows remote attackers to inject arbitrary web script or HTML via the query parameter in a Search action.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4966
|
2024-11-21 10:22 |
2011-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298807
|
- |
|
dlink
|
dcs-2121_firmware dcs-2121
|
/etc/rc.d/rc.local on the D-Link DCS-2121 camera with firmware 1.04 configures a hardcoded password of admin for the root account, which makes it easier for remote attackers to obtain shell access by…
|
CWE-255
Credentials Management
|
CVE-2010-4965
|
2024-11-21 10:22 |
2011-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298808
|
- |
|
dlink
|
dcs-2121_firmware dcs-2121
|
recorder_test.cgi on the D-Link DCS-2121 camera with firmware 1.04 allows remote attackers to execute arbitrary commands via shell metacharacters in the Password field, related to a "semicolon inject…
|
CWE-94
Code Injection
|
CVE-2010-4964
|
2024-11-21 10:22 |
2011-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298809
|
- |
|
hulihanapplications
|
hulihan_bxr
|
SQL injection vulnerability in folder/list in Hulihan BXR 0.6.8 allows remote attackers to execute arbitrary SQL commands via the order_by parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4963
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298810
|
- |
|
dev-team_typoheads
|
webkitpdf
|
Unspecified vulnerability in the Webkit PDFs (webkitpdf) extension before 1.1.4 for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4962
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|