267051
|
- |
|
maximo_cuadros
|
gb_fenewssubmit
|
Cross-site scripting (XSS) vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4707
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267052
|
- |
|
maximo_cuadros
|
gb_fenewssubmit
|
SQL injection vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecif…
|
CWE-89
SQL Injection
|
CVE-2009-4708
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267053
|
- |
|
jan_bednarik
|
cooluri
|
SQL injection vulnerability in the CoolURI (cooluri) extension before 1.0.16 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability tha…
|
CWE-89
SQL Injection
|
CVE-2009-4711
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267054
|
- |
|
tukanas
|
easyclassifieds_script
|
SQL injection vulnerability in index.php in Tukanas Classifieds (aka EasyClassifieds) Script 1.0 allows remote attackers to execute arbitrary SQL commands via the b parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4712
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267055
|
- |
|
gonafish
|
webstatcaffe
|
Multiple cross-site scripting (XSS) vulnerabilities in Gonafish WebStatCaffe allow remote attackers to inject arbitrary web script or HTML via the (1) host parameter to stat/host.php, nodayshow param…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4717
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267056
|
- |
|
resalecode
|
php_shopping_cart_selling_website_script
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in PHP Shopping Cart Selling Website Script allow remote attackers to inject arbitrary web script or HTML via the (1) txtkeywords and …
|
CWE-79
Cross-site Scripting
|
CVE-2009-4688
|
2010-03-11 14:00 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267057
|
- |
|
resalecode
|
php_shopping_cart_selling_website_script
|
SQL injection vulnerability in index.php in PHP Shopping Cart Selling Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4689
|
2010-03-11 14:00 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267058
|
- |
|
resalecode
|
classified_linktrader_script
|
SQL injection vulnerability in addlink.php in Classified Linktrader Script allows remote attackers to execute arbitrary SQL commands via the slctCategories parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4691
|
2010-03-11 14:00 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267059
|
- |
|
thomas_perez
|
tribisur
|
Directory traversal vulnerability in modules/hayoo/index.php in Tribisur 2.1, 2.0, and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary files via d…
|
CWE-22
Path Traversal
|
CVE-2010-0958
|
2010-03-11 05:14 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267060
|
- |
|
energizer
|
duo_usb
|
UsbCharger.dll in the Energizer DUO USB battery charger software contains a backdoor that is implemented through the Arucer.dll file in the %WINDIR%\system32 directory, which allows remote attackers …
|
CWE-94
Code Injection
|
CVE-2010-0103
|
2010-03-11 05:13 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|