|
305821
|
- |
|
xlightftpd
|
xlight_ftp_server
|
Directory traversal vulnerability in the SFTP/SSH2 virtual server in Xlight FTP Server 3.5.0, 3.5.5, and possibly other versions before 3.6 allows remote authenticated users to read, overwrite, or de…
|
CWE-22
Path Traversal
|
CVE-2010-2695
|
2024-11-21 10:17 |
2010-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305822
|
- |
|
redcomponent
|
com_redshop
|
SQL injection vulnerability in the redSHOP Component (com_redshop) 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the pid parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2010-2694
|
2024-11-21 10:17 |
2010-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305823
|
- |
|
2daybiz
|
custom_t-shirt_design_script
|
Cross-site scripting (XSS) vulnerability in 2daybiz Custom T-Shirt Design Script allows remote attackers to inject arbitrary web script or HTML via a review comment.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2692
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305824
|
- |
|
2daybiz
|
custom_t-shirt_design_script
|
Multiple SQL injection vulnerabilities in 2daybiz Custom T-Shirt Design Script allow remote attackers to execute arbitrary SQL commands via the (1) sbid parameter to products_details.php, (2) pid par…
|
CWE-89
SQL Injection
|
CVE-2010-2691
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305825
|
- |
|
jooforge
|
com_gamesbox
|
SQL injection vulnerability in the JOOFORGE Gamesbox (com_gamesbox) component 1.0.2, and possibly earlier, for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter i…
|
CWE-89
SQL Injection
|
CVE-2010-2690
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305826
|
- |
|
internetdm
|
webdm_cms
|
SQL injection vulnerability in cont_form.php in Internet DM WebDM CMS allows remote attackers to execute arbitrary SQL commands via the cf_id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2689
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305827
|
- |
|
site2nite
|
boat_classifieds
|
SQL injection vulnerability in detail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the ID parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2688
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305828
|
- |
|
site2nite
|
boat_classifieds
|
SQL injection vulnerability in printdetail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the Id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2687
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305829
|
- |
|
topmanage
|
olk_module
|
Multiple SQL injection vulnerabilities in clientes.asp in the TopManage OLK module 1.91.30 for SAP allow remote attackers to execute arbitrary SQL commands via the (1) PriceFrom, (2) PriceTo, and (3)…
|
CWE-89
SQL Injection
|
CVE-2010-2686
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305830
|
- |
|
customerparadigm
|
pagedirector_cms
|
siteadmin/adduser.php in Customer Paradigm PageDirector CMS does not properly restrict access, which allows remote attackers to bypass intended restrictions and add administrative users via a direct …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2685
|
2024-11-21 10:17 |
2010-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|