|
305801
|
- |
|
eliteladders
|
elite_gaming_ladders
|
SQL injection vulnerability in standings.php in Elite Gaming Ladders 3.5 allows remote attackers to execute arbitrary SQL commands via the ladder[id] parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5014
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305802
|
- |
|
mckenziecreations
|
virtual_real_estate_manager
|
SQL injection vulnerability in listing_detail.asp in Mckenzie Creations Virtual Real Estate Manager (VRM) 3.5 allows remote attackers to execute arbitrary SQL commands via the Lid parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5013
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305803
|
- |
|
david_noguera_gutierrez
|
dalogin
|
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third pa…
|
CWE-89
SQL Injection
|
CVE-2010-5012
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305804
|
- |
|
schoolmation
|
schoolmation
|
SQL injection vulnerability in schoolmv2/html/studentmain.php in SchoolMation 2.3 allows remote attackers to execute arbitrary SQL commands via the session parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5011
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305805
|
- |
|
schoolmation
|
schoolmation
|
Cross-site scripting (XSS) vulnerability in schoolmv2/html/studentmain.php in SchoolMation 2.3 allows remote attackers to inject arbitrary web script or HTML via the session parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5010
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305806
|
- |
|
ut-files
|
utstats
|
SQL injection vulnerability in index.php in UTStats Beta 4 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter in a matchp action.
|
CWE-89
SQL Injection
|
CVE-2010-5009
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305807
|
- |
|
denaliintranet
|
brightsuite_groupware
|
SQL injection vulnerability in pages/contact_list_mail_form.asp in BrightSuite Groupware 5.4 allows remote attackers to execute arbitrary SQL commands via the ContactID parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5008
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305808
|
- |
|
ut-files
|
utstats
|
Cross-site scripting (XSS) vulnerability in pages/match_report.php in UTStats Beta 4 and earlier allows remote attackers to inject arbitrary web script or HTML via the mid parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5007
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305809
|
- |
|
emophp
|
emo_realty_manager
|
SQL injection vulnerability in googlemap/index.php in EMO Realty Manager allows remote attackers to execute arbitrary SQL commands via the cat1 parameter.
|
CWE-89
SQL Injection
|
CVE-2010-5006
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305810
|
- |
|
rayzz
|
photoz
|
Cross-site scripting (XSS) vulnerability in members/profileCommentsResponse.php in Rayzz Photoz allows remote attackers to inject arbitrary web script or HTML via the profileCommentTextArea parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2010-5005
|
2024-11-21 10:22 |
2011-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|