|
305331
|
- |
|
wimleers
|
hierarchical_select
|
Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 5.x before 5.x-3.2 and 6.x before 6.x-3.2 for Drupal allows remote authenticated users, with administer taxonomy permissions…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2724
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305332
|
- |
|
lsoft
|
listserv
|
Cross-site scripting (XSS) vulnerability in LISTSERV 15 and 16 allows remote attackers to inject arbitrary web script or HTML via the T parameter. NOTE: the provenance of this information is unknown…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2723
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305333
|
- |
|
rightinpoint
|
lyrics_engine
|
Cross-site scripting (XSS) vulnerability in index.php in RightInPoint Lyrics Script 3.0 allows remote attackers to inject arbitrary web script or HTML via the artist_id parameter, which is not proper…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2722
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305334
|
- |
|
rightinpoint
|
lyrics_engine
|
SQL injection vulnerability in index.php in RightInPoint Lyrics Script 3.0 allows remote attackers to execute arbitrary SQL commands via the artist_id parameter in an addalbum action.
|
CWE-89
SQL Injection
|
CVE-2010-2721
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305335
|
- |
|
phpaa
|
phpaacms
|
SQL injection vulnerability in list.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these deta…
|
CWE-89
SQL Injection
|
CVE-2010-2720
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305336
|
- |
|
phpaa
|
phpaacms
|
SQL injection vulnerability in show.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2719
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305337
|
- |
|
cruxsoftware
|
cruxpa
|
Multiple cross-site scripting (XSS) vulnerabilities in CruxSoftware CruxPA 2.00, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) txtusername parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2010-2718
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305338
|
- |
|
cruxsoftware
|
cruxcms
|
Cross-site scripting (XSS) vulnerability in manager/login.php in CruxSoftware CruxCMS 3.0, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the txtusername par…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2717
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305339
|
- |
|
rich_kavanagh
|
psnews
|
Multiple SQL injection vulnerabilities in PsNews 1.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) ndetail.php and (2) print.php.
|
CWE-89
SQL Injection
|
CVE-2010-2716
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305340
|
- |
|
tcwonline
|
tcw_php_album
|
Cross-site scripting (XSS) vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to inject arbitrary web script or HTML via the album parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2715
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|