|
291181
|
- |
|
jessgramp
|
minicms
|
miniCMS 1.0 and 2.0 allows remote attackers to execute arbitrary PHP code via a crafted (1) pagename or (2) area variable containing an executable extension, which is not properly handled by (a) upda…
|
CWE-94
Code Injection
|
CVE-2012-5231
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291182
|
- |
|
harmistechnology
|
com_jesubmit
|
Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla! has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2012-5230
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291183
|
- |
|
wordpress
|
slideshow_gallery2
|
Cross-site scripting (XSS) vulnerability in css/gallery-css.php in the Slideshow Gallery2 plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the border parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-5229
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291184
|
- |
|
tincan
|
phplist
|
Cross-site scripting (XSS) vulnerability in admin/index.php in phplist 2.10.9, 2.10.17, and possibly other versions before 2.10.19 allows remote attackers to inject arbitrary web script or HTML via t…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5228
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291185
|
- |
|
peel
|
peel_shopping
|
SQL injection vulnerability in administrer/tva.php in Peel SHOPPING 2.8 and 2.9 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2012-5227
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291186
|
- |
|
peel
|
peel_shopping
|
Multiple cross-site scripting (XSS) vulnerabilities in Peel SHOPPING 2.8 and 2.9 allow remote attackers to inject arbitrary web script or HTML via the (1) motclef parameter to achat/recherche.php or …
|
CWE-79
Cross-site Scripting
|
CVE-2012-5226
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291187
|
- |
|
eliteweaver
|
xclick_cart
|
Cross-site scripting (XSS) vulnerability in webscr.php in xClick Cart 1.0.1 and 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the shopping_url parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-5225
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291188
|
- |
|
vbadvanced
|
vbadvanced_cmps
|
PHP remote file inclusion vulnerability in vb/includes/vba_cmps_include_bottom.php in vBadvanced CMPS 3.2.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pages[te…
|
CWE-94
Code Injection
|
CVE-2012-5224
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291189
|
- |
|
crawlability
|
vbseo
|
The proc_deutf function in includes/functions_vbseocp_abstract.php in vBSEO 3.5.0, 3.5.1, 3.5.2, 3.6.0, and earlier allows remote attackers to insert and execute arbitrary PHP code via "complex curly…
|
CWE-94
Code Injection
|
CVE-2012-5223
|
2024-11-21 10:44 |
2012-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291190
|
- |
|
condor_project
|
condor
|
Multiple unspecified vulnerabilities in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 have unknown impact and attack vectors related to "error checking of system calls."
|
NVD-CWE-noinfo
|
CVE-2012-5197
|
2024-11-21 10:44 |
2012-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|