|
302621
|
- |
|
modx
|
revolution
|
Cross-site scripting (XSS) vulnerability in manager/index.php in MODx Revolution 2.0.2-pl allows remote attackers to inject arbitrary web script or HTML via the modhash parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4883
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302622
|
- |
|
ventics
|
auto_cms
|
Cross-site scripting (XSS) vulnerability in autocms.php in Auto CMS 1.6 allows remote attackers to inject arbitrary web script or HTML via the sitetitle parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4882
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302623
|
- |
|
apphp
|
apphp_calendar
|
Multiple cross-site request forgery (CSRF) vulnerabilities in calendar.class.php in ApPHP Calendar (ApPHP CAL) allow remote attackers to hijack the authentication of unspecified victims for requests …
|
CWE-352
Origin Validation Error
|
CVE-2010-4881
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302624
|
- |
|
apphp
|
apphp_calendar
|
Multiple cross-site scripting (XSS) vulnerabilities in calendar.class.php in ApPHP Calendar (ApPHP CAL) allow remote attackers to inject arbitrary web script or HTML via the (1) category_name, (2) ca…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4880
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302625
|
- |
|
digitaljunkies
|
dompdf
|
PHP remote file inclusion vulnerability in dompdf.php in dompdf 0.6.0 beta1 allows remote attackers to execute arbitrary PHP code via a URL in the input_file parameter.
|
CWE-94
Code Injection
|
CVE-2010-4879
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302626
|
- |
|
hinnendahl
|
kontakt_formular
|
PHP remote file inclusion vulnerability in formmailer.php in Kontakt Formular 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad parameter.
|
CWE-94
Code Injection
|
CVE-2010-4878
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302627
|
- |
|
insanevisions
|
onecms
|
Cross-site scripting (XSS) vulnerability in index.php in OneCMS 2.6.1 allows remote attackers to inject arbitrary web script or HTML via the view parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4877
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302628
|
- |
|
mblogger_project
|
mblogger
|
SQL injection vulnerability in viewpost.php in mBlogger 1.0.04 allows remote attackers to execute arbitrary SQL commands via the postID parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4876
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302629
|
- |
|
xondie
|
vodpod_video_gallery
|
Cross-site scripting (XSS) vulnerability in vodpod-video-gallery/vodpod_gallery_thumbs.php in the Vodpod Video Gallery Plugin 3.1.5 for WordPress allows remote attackers to inject arbitrary web scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4875
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302630
|
- |
|
ninkobb
|
ninkobb
|
Multiple cross-site scripting (XSS) vulnerabilities in users.php in NinkoBB 1.3 RC5 allow remote attackers to inject arbitrary web script or HTML via the (1) first_name, (2) last_name, (3) msn, or (4…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4874
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|