|
300421
|
- |
|
dlink
|
dcs-2121_firmware dcs-2121
|
recorder_test.cgi on the D-Link DCS-2121 camera with firmware 1.04 allows remote attackers to execute arbitrary commands via shell metacharacters in the Password field, related to a "semicolon inject…
|
CWE-94
Code Injection
|
CVE-2010-4964
|
2024-11-21 10:22 |
2011-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300422
|
- |
|
hulihanapplications
|
hulihan_bxr
|
SQL injection vulnerability in folder/list in Hulihan BXR 0.6.8 allows remote attackers to execute arbitrary SQL commands via the order_by parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4963
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300423
|
- |
|
dev-team_typoheads
|
webkitpdf
|
Unspecified vulnerability in the Webkit PDFs (webkitpdf) extension before 1.1.4 for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4962
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300424
|
- |
|
dev-team_typoheads
|
webkitpdf
|
SQL injection vulnerability in the Webkit PDFs (webkitpdf) extension before 1.1.4 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4961
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300425
|
- |
|
martin_hesse
|
mh_branchenbuch
|
Cross-site scripting (XSS) vulnerability in the Branchenbuch (aka Yellow Pages or mh_branchenbuch) extension before 0.9.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4960
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300426
|
- |
|
preproject
|
pre_podcast_portal
|
SQL injection vulnerability in the login feature in Pre Projects Pre Podcast Portal allows remote attackers to execute arbitrary SQL commands via the password parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4959
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300427
|
- |
|
pradoportal
|
prado_portal
|
SQL injection vulnerability in index.php in Prado Portal 1.2.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4958
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300428
|
- |
|
nadine_schwingler
|
ke_questionnaire
|
SQL injection vulnerability in the Questionnaire (ke_questionnaire) extension before 2.2.3 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4957
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300429
|
- |
|
nadine_schwingler
|
ke_questionnaire
|
Cross-site scripting (XSS) vulnerability in the Questionnaire (ke_questionnaire) extension before 2.2.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vector…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4956
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300430
|
- |
|
php-programs
|
apboard_developers_apboard
|
SQL injection vulnerability in board/board.php in APBoard Developers APBoard 2.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than …
|
CWE-89
SQL Injection
|
CVE-2010-4955
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|