|
308061
|
- |
|
phpaa
|
phpaacms
|
SQL injection vulnerability in show.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2719
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308062
|
- |
|
cruxsoftware
|
cruxpa
|
Multiple cross-site scripting (XSS) vulnerabilities in CruxSoftware CruxPA 2.00, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) txtusername parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2010-2718
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308063
|
- |
|
cruxsoftware
|
cruxcms
|
Cross-site scripting (XSS) vulnerability in manager/login.php in CruxSoftware CruxCMS 3.0, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the txtusername par…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2717
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308064
|
- |
|
rich_kavanagh
|
psnews
|
Multiple SQL injection vulnerabilities in PsNews 1.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) ndetail.php and (2) print.php.
|
CWE-89
SQL Injection
|
CVE-2010-2716
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308065
|
- |
|
tcwonline
|
tcw_php_album
|
Cross-site scripting (XSS) vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to inject arbitrary web script or HTML via the album parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2715
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308066
|
- |
|
tcwonline
|
tcw_php_album
|
SQL injection vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to execute arbitrary SQL commands via the album parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2714
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308067
|
- |
|
epicgames
|
unreal_engine postal_2 raven_shield swat_4 unreal_tournament_2003 unreal_tournament_2004
|
Buffer overflow in the UGameEngine::UpdateConnectingMessage function in the Unreal engine 1, 2, and 2.5, as used in multiple games including Unreal Tournament 2004, Unreal tournament 2003, Postal 2, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2702
|
2024-11-21 10:17 |
2010-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308068
|
- |
|
fathsoft
|
fathftp
|
Multiple buffer overflows in the FathFTP ActiveX control 1.7 allow remote attackers to execute arbitrary code via (1) the GetFromURL member or (2) a long argument to the RasIsConnected method.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2701
|
2024-11-21 10:17 |
2010-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308069
|
- |
|
edgephp
|
clickbank_affiliate_marketplace_script
|
Cross-site scripting (XSS) vulnerability in index.php in Edge PHP Clickbank Affiliate Marketplace Script (CBQuick) allows remote attackers to inject arbitrary web script or HTML via the search parame…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2700
|
2024-11-21 10:17 |
2010-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308070
|
- |
|
edgephp
|
clickbank_affiliate_marketplace_script
|
SQL injection vulnerability in index.php in Edge PHP Clickbank Affiliate Marketplace Script (CBQuick) allows remote attackers to execute arbitrary SQL commands via the search parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2699
|
2024-11-21 10:17 |
2010-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|