|
301141
|
- |
|
harmistechnology
|
com_jeajaxeventcalendar
|
SQL injection vulnerability in JE Ajax Event Calendar (com_jeajaxeventcalendar) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in an alleve…
|
CWE-89
SQL Injection
|
CVE-2010-4365
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301142
|
- |
|
dadabik
|
dadabik
|
DaDaBIK 4.3 beta3, when running in a case-sensitive environment, does not include the htmLawed library, which allows remote attackers to bypass the protection mechanism for CVE-2010-4355 and conduct …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4364
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301143
|
- |
|
mrcgiguy
|
freeticket
|
Multiple SQL injection vulnerabilities in contact.php in MRCGIGUY (MCG) FreeTicket 1.0.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) id an…
|
CWE-89
SQL Injection
|
CVE-2010-4363
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301144
|
- |
|
micronetsoft
|
rv_dealer_website
|
Multiple SQL injection vulnerabilities in MicroNetsoft RV Dealer Website allow remote attackers to execute arbitrary SQL commands via the (1) selStock parameter to search.asp and the (2) orderBy para…
|
CWE-89
SQL Injection
|
CVE-2010-4362
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301145
|
- |
|
jurpo
|
jurpopage
|
Cross-site scripting (XSS) vulnerability in url-gateway.php in Jurpopage 0.2.0 allows remote attackers to inject arbitrary web script or HTML via the url parameter. NOTE: the provenance of this info…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4361
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301146
|
- |
|
jurpo
|
jurpopage
|
Multiple SQL injection vulnerabilities in index.php in Jurpopage 0.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) note and (2) pg parameters, different vectors than CVE-2010…
|
CWE-89
SQL Injection
|
CVE-2010-4360
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301147
|
- |
|
jurpo
|
jurpopage
|
SQL injection vulnerability in index.php in Jurpopage 0.2.0 allows remote attackers to execute arbitrary SQL commands via the category parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4359
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301148
|
- |
|
mrcgiguy
|
guestbook
|
Multiple cross-site scripting (XSS) vulnerabilities in gb.cgi in MRCGIGUY (MCG) Guestbook 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, (3) website, a…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4358
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301149
|
- |
|
boka
|
siteengine
|
SQL injection vulnerability in comments.php in SiteEngine 7.1 allows remote attackers to execute arbitrary SQL commands via the module parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4357
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301150
|
- |
|
site2nite
|
big_truck_broker
|
SQL injection vulnerability in news_default.asp in Site2Nite Big Truck Broker allows remote attackers to execute arbitrary SQL commands via the txtSiteId parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4356
|
2024-11-21 10:20 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|