|
300861
|
- |
|
martin_hesse
|
mh_branchenbuch
|
Cross-site scripting (XSS) vulnerability in the Branchenbuch (aka Yellow Pages or mh_branchenbuch) extension before 0.9.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4960
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300862
|
- |
|
preproject
|
pre_podcast_portal
|
SQL injection vulnerability in the login feature in Pre Projects Pre Podcast Portal allows remote attackers to execute arbitrary SQL commands via the password parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4959
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300863
|
- |
|
pradoportal
|
prado_portal
|
SQL injection vulnerability in index.php in Prado Portal 1.2.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4958
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300864
|
- |
|
nadine_schwingler
|
ke_questionnaire
|
SQL injection vulnerability in the Questionnaire (ke_questionnaire) extension before 2.2.3 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4957
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300865
|
- |
|
nadine_schwingler
|
ke_questionnaire
|
Cross-site scripting (XSS) vulnerability in the Questionnaire (ke_questionnaire) extension before 2.2.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vector…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4956
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300866
|
- |
|
php-programs
|
apboard_developers_apboard
|
SQL injection vulnerability in board/board.php in APBoard Developers APBoard 2.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than …
|
CWE-89
SQL Injection
|
CVE-2010-4955
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300867
|
- |
|
gambio
|
xt\
|
SQL injection vulnerability in product_reviews_info.php in xt:Commerce Gambio 2008 allows remote attackers to execute arbitrary SQL commands via the products_id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4954
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300868
|
- |
|
jw_calendar
|
jw_calendar
|
Unspecified vulnerability in the JW Calendar (jw_calendar) extension 1.3.20 and earlier for TYPO3 allows remote attackers to execute arbitrary code via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4953
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300869
|
- |
|
joachim_ruhs
|
festat
|
SQL injection vulnerability in the FE user statistic (festat) extension before 0.2.4 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4952
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300870
|
- |
|
thomas_mammitzsch
|
vx_xajax_shoutbox
|
Cross-site scripting (XSS) vulnerability in the xaJax Shoutbox (vx_xajax_shoutbox) extension before 1.0.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vect…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4951
|
2024-11-21 10:22 |
2011-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|