258061
|
- |
|
clicktech
|
clickcart
|
Multiple SQL injection vulnerabilities in customer_login_check.asp in ClickTech ClickCart 6.0 allow remote attackers to execute arbitrary SQL commands via (1) the txtEmail parameter (aka E-MAIL field…
|
CWE-89
SQL Injection
|
CVE-2009-0462
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258062
|
- |
|
groonesworld
|
glinks
|
PHP remote file inclusion vulnerability in includes/header.php in Groone GLinks 2.1 allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.
|
CWE-94
Code Injection
|
CVE-2009-0463
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258063
|
- |
|
groonesworld
|
gbook
|
PHP remote file inclusion vulnerability in includes/header.php in Groone GBook 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.
|
CWE-94
Code Injection
|
CVE-2009-0464
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258064
|
- |
|
synactis
|
all_in_the_box.ocx
|
The SaveDoc method in the All_In_The_Box.AllBox ActiveX control in ALL_IN_THE_BOX.OCX in Synactis ALL In-The-Box ActiveX 3 allows remote attackers to create and overwrite arbitrary files via an argum…
|
CWE-20
Improper Input Validation
|
CVE-2009-0465
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258065
|
- |
|
armorlogic
|
profense_web_application_firewall
|
Cross-site scripting (XSS) vulnerability in proxy.html in Profense Web Application Firewall 2.6.2 and 2.6.3 allows remote attackers to inject arbitrary web script or HTML via the proxy parameter in a…
|
CWE-79
Cross-site Scripting
|
CVE-2009-0467
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258066
|
- |
|
armorlogic
|
profense_web_application_firewall
|
Multiple cross-site request forgery (CSRF) vulnerabilities in ajax.html in Profense Web Application Firewall 2.6.2 and 2.6.3 allow remote attackers to hijack the authentication of administrators for …
|
CWE-352
Origin Validation Error
|
CVE-2009-0468
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258067
|
- |
|
sun
|
opensolaris solaris
|
The IP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv_82, uses an improper arena when allocating minor numbers for sockets, which allows local users to cause a denial of servi…
|
CWE-189
Numeric Errors
|
CVE-2009-0480
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258068
|
- |
|
elecard
|
elecard_mpeg_player
|
Stack-based buffer overflow in Elecard MPEG Player 5.5 build 15884.081218 allows remote attackers to execute arbitrary code via a M3U file containing a long URL.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-0491
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258069
|
- |
|
martin_unzner
|
it\!cms
|
SQL injection vulnerability in login.php in IT!CMS 2.1a and earlier allows remote attackers to execute arbitrary SQL commands via the Username.
|
CWE-89
SQL Injection
|
CVE-2009-0493
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258070
|
- |
|
mivaco
|
com_portfol
|
SQL injection vulnerability in the Portfol (com_portfol) 1.2 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the vcatid parameter in a viewcategory action to index…
|
CWE-89
SQL Injection
|
CVE-2009-0494
|
2017-09-29 10:33 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|