|
302971
|
- |
|
joomlatune
|
com_jcomments
|
Cross-site scripting (XSS) vulnerability in admin.jcomments.php in the JoomlaTune JComments (com_jcomments) component 2.1.0.0 for Joomla! allows remote authenticated users to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2010-5048
|
2024-11-21 10:22 |
2011-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302972
|
- |
|
v-eva
|
press_release_script
|
SQL injection vulnerability in page.php in V-EVA Press Release Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5047
|
2024-11-21 10:22 |
2011-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302973
|
- |
|
ecocms
|
ecocms
|
Cross-site scripting (XSS) vulnerability in admin.php in ecoCMS allows remote attackers to inject arbitrary web script or HTML via the p parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5046
|
2024-11-21 10:22 |
2011-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302974
|
- |
|
sellatsite
|
smart_asp_survey
|
Cross-site scripting (XSS) vulnerability in poll/default.asp in Smart ASP Survey allows remote attackers to inject arbitrary web script or HTML via the catid parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5045
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302975
|
- |
|
kanich
|
com_searchlog
|
SQL injection vulnerability in models/log.php in the Search Log (com_searchlog) component 3.1.0 for Joomla! allows remote authenticated users, with Public Back-end privileges, to execute arbitrary SQ…
|
CWE-89
SQL Injection
|
CVE-2010-5044
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302976
|
- |
|
blueconstantmedia
|
com_djartgallery
|
SQL injection vulnerability in the DJ-ArtGallery (com_djartgallery) component 0.9.1 for Joomla! allows remote authenticated users to execute arbitrary SQL commands via the cid[] parameter in an editI…
|
CWE-89
SQL Injection
|
CVE-2010-5043
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302977
|
- |
|
blueconstantmedia
|
com_djartgallery
|
Cross-site scripting (XSS) vulnerability in the DJ-ArtGallery (com_djartgallery) component 0.9.1 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the cid[] parameter in …
|
CWE-79
Cross-site Scripting
|
CVE-2010-5042
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302978
|
- |
|
john_bradshaw
|
np_gallery_plugin
|
SQL injection vulnerability in index.php in the NP_Gallery plugin 0.94 for Nucleus allows remote attackers to execute arbitrary SQL commands via the id parameter in a plugin action.
|
CWE-89
SQL Injection
|
CVE-2010-5041
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302979
|
- |
|
john_bradshaw
|
np_gallery_plugin
|
PHP remote file inclusion vulnerability in nucleus/plugins/NP_gallery.php in the NP_Gallery plugin 0.94 for Nucleus allows remote attackers to execute arbitrary PHP code via a URL in the DIR_NUCLEUS …
|
CWE-94
Code Injection
|
CVE-2010-5040
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302980
|
- |
|
scriptsfeed
|
recipes_listing_portal
|
SQL injection vulnerability in control/admin_login.php in ScriptsFeed Recipes Listing Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the loginid parameter (aka the UserName …
|
CWE-89
SQL Injection
|
CVE-2010-5039
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|