|
300481
|
- |
|
simon_philips
|
com_aardvertiser
|
SQL injection vulnerability in the Aardvertiser (com_aardvertiser) component 2.1 and 2.1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_name parameter in a view a…
|
CWE-89
SQL Injection
|
CVE-2010-4904
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300482
|
- |
|
cubecart
|
cubecart
|
SQL injection vulnerability in index.php in CubeCart 4.3.3 allows remote attackers to execute arbitrary SQL commands via the searchStr parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4903
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300483
|
- |
|
joomla-clantools
|
clantools
|
Multiple SQL injection vulnerabilities in the Clantools (com_clantools) component 1.2.3 for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) squad or (2) showgame paramete…
|
CWE-89
SQL Injection
|
CVE-2010-4902
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300484
|
- |
|
squiz
|
mysource_matrix
|
Multiple cross-site scripting (XSS) vulnerabilities in char_map.php in MySource Matrix 3.28.3 allow remote attackers to inject arbitrary web script or HTML via the (1) height or (2) width parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4901
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300485
|
- |
|
webmanager-pro
|
cms_webmanager-pro
|
Open redirect vulnerability in c.php in CMS WebManager-Pro 8.1 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.
|
CWE-20
Improper Input Validation
|
CVE-2010-4900
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300486
|
- |
|
webmanager-pro
|
cms_webmanager-pro
|
SQL injection vulnerability in c.php in CMS WebManager-Pro before 8.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4899
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300487
|
- |
|
gantry-framework
|
com_gantry
|
SQL injection vulnerability in the Gantry (com_gantry) component 3.0.10 for Joomla! allows remote attackers to execute arbitrary SQL commands via the moduleid parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2010-4898
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300488
|
- |
|
bluecms_project
|
bluecms
|
SQL injection vulnerability in comment.php in BlueCMS 1.6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header in a send action.
|
CWE-89
SQL Injection
|
CVE-2010-4897
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300489
|
- |
|
expinion.net
|
member_management_system
|
Cross-site scripting (XSS) vulnerability in admin/index.asp in Member Management System 4.0 allows remote attackers to inject arbitrary web script or HTML via the REF_URL parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4896
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300490
|
- |
|
chillycms
|
chillycms
|
Cross-site scripting (XSS) vulnerability in core/showsite.php in chillyCMS 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the username field). NOTE:…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4895
|
2024-11-21 10:22 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|