257441
|
- |
|
cmsworks
|
cmsworks
|
PHP remote file inclusion vulnerability in admin/include/lib.module.php in cmsWorks 2.2 RC4, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the m…
|
CWE-94
Code Injection
|
CVE-2008-2877
|
2017-09-29 10:31 |
2008-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257442
|
- |
|
relative_real_estate_systems
|
relative_real_estate_systems
|
Relative Real Estate Systems 3.0 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information.
|
CWE-200
Information Exposure
|
CVE-2008-2881
|
2017-09-29 10:31 |
2008-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257443
|
- |
|
jamroom
|
jamroom
|
PHP remote file inclusion vulnerability in include/plugins/jrBrowser/payment.php in Jamroom 3.3.0 through 3.3.5 allows remote attackers to execute arbitrary PHP code via a URL in the jamroom[jm_dir] …
|
CWE-94
Code Injection
|
CVE-2008-2883
|
2017-09-29 10:31 |
2008-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257444
|
- |
|
odars
|
odars
|
PHP remote file inclusion vulnerability in src/browser/resource/categories/resource_categories_view.php in Open Digital Assets Repository System (ODARS) 1.0.2, when register_globals is enabled, allow…
|
CWE-94
Code Injection
|
CVE-2008-2885
|
2017-09-29 10:31 |
2008-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257445
|
- |
|
jamroom
|
jamroom
|
PHP remote file inclusion vulnerability in include/plugins/jrBrowser/purchase.php in Jamroom 3.3.0 through 3.3.5, when register_globals is enabled, allows remote attackers to execute arbitrary PHP co…
|
CWE-94
Code Injection
|
CVE-2008-2886
|
2017-09-29 10:31 |
2008-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257446
|
- |
|
migcms
|
migcms
|
Multiple PHP remote file inclusion vulnerabilities in MiGCMS 2.0.5, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[application][app_ro…
|
CWE-94
Code Injection
|
CVE-2008-2888
|
2017-09-29 10:31 |
2008-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257447
|
- |
|
emusoft
|
emucms
|
SQL injection vulnerability in index.php in eMuSOFT emuCMS 0.3 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a category action.
|
CWE-89
SQL Injection
|
CVE-2008-2891
|
2017-09-29 10:31 |
2008-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257448
|
- |
|
feellove joomla
|
exp_shop_component com_expshop
|
SQL injection vulnerability in the EXP Shop (com_expshop) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show_payment action to index…
|
CWE-89
SQL Injection
|
CVE-2008-2892
|
2017-09-29 10:31 |
2008-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257449
|
- |
|
ajhyip
|
aj_square_aj-hyip
|
SQL injection vulnerability in news.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2008-2532.
|
CWE-89
SQL Injection
|
CVE-2008-2893
|
2017-09-29 10:31 |
2008-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257450
|
- |
|
getfireant
|
fireant
|
Directory traversal vulnerability in index.php in FireAnt 1.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.
|
CWE-22
Path Traversal
|
CVE-2008-2896
|
2017-09-29 10:31 |
2008-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|