267391
|
- |
|
sebastian_winterhalder
|
mailform
|
Cross-site scripting (XSS) vulnerability in the Mailform (mailform) extension before 0.9.24 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2009-4706
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267392
|
- |
|
maximo_cuadros
|
gb_fenewssubmit
|
Cross-site scripting (XSS) vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4707
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267393
|
- |
|
maximo_cuadros
|
gb_fenewssubmit
|
SQL injection vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecif…
|
CWE-89
SQL Injection
|
CVE-2009-4708
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267394
|
- |
|
jan_bednarik
|
cooluri
|
SQL injection vulnerability in the CoolURI (cooluri) extension before 1.0.16 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability tha…
|
CWE-89
SQL Injection
|
CVE-2009-4711
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267395
|
- |
|
tukanas
|
easyclassifieds_script
|
SQL injection vulnerability in index.php in Tukanas Classifieds (aka EasyClassifieds) Script 1.0 allows remote attackers to execute arbitrary SQL commands via the b parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4712
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267396
|
- |
|
gonafish
|
webstatcaffe
|
Multiple cross-site scripting (XSS) vulnerabilities in Gonafish WebStatCaffe allow remote attackers to inject arbitrary web script or HTML via the (1) host parameter to stat/host.php, nodayshow param…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4717
|
2010-03-16 13:00 |
2010-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267397
|
- |
|
resalecode
|
php_shopping_cart_selling_website_script
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in PHP Shopping Cart Selling Website Script allow remote attackers to inject arbitrary web script or HTML via the (1) txtkeywords and …
|
CWE-79
Cross-site Scripting
|
CVE-2009-4688
|
2010-03-11 14:00 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267398
|
- |
|
resalecode
|
php_shopping_cart_selling_website_script
|
SQL injection vulnerability in index.php in PHP Shopping Cart Selling Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4689
|
2010-03-11 14:00 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267399
|
- |
|
resalecode
|
classified_linktrader_script
|
SQL injection vulnerability in addlink.php in Classified Linktrader Script allows remote attackers to execute arbitrary SQL commands via the slctCategories parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4691
|
2010-03-11 14:00 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267400
|
- |
|
thomas_perez
|
tribisur
|
Directory traversal vulnerability in modules/hayoo/index.php in Tribisur 2.1, 2.0, and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary files via d…
|
CWE-22
Path Traversal
|
CVE-2010-0958
|
2010-03-11 05:14 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|