257531
|
- |
|
barenuked
|
barenuked_cms
|
SQL injection vulnerability in admin/index.php in BareNuked CMS 1.1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the password parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3133
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257532
|
- |
|
ashopsoftware
|
ashop_deluxe
|
SQL injection vulnerability in catalogue.php in AShop Deluxe 4.x allows remote attackers to execute arbitrary SQL commands via the cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3136
|
2017-09-29 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257533
|
- |
|
mackt ollydbg
|
imprec ollydbg
|
Stack-based buffer overflow in (1) OllyDBG 1.10 and (2) ImpREC 1.7f allows user-assisted attackers to execute arbitrary code via a crafted DLL file that contains a long string.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3148
|
2017-09-29 10:31 |
2008-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257534
|
- |
|
neutrino-cms
|
atomic_edition
|
Directory traversal vulnerability in index.php in Neutrino Atomic Edition 0.8.4 allows remote attackers to read and modify files, as demonstrated by manipulating data/sess.php in (1) usb and (2) del_…
|
CWE-22
Path Traversal
|
CVE-2008-3150
|
2017-09-29 10:31 |
2008-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257535
|
- |
|
orbitscripts
|
smartppc smartppc_pro
|
SQL injection vulnerability in directory.php in SmartPPC and SmartPPC Pro allows remote attackers to execute arbitrary SQL commands via the idDirectory parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3152
|
2017-09-29 10:31 |
2008-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257536
|
- |
|
tritoncms
|
triton_cms_pro
|
SQL injection vulnerability in Triton CMS Pro allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.
|
CWE-89
SQL Injection
|
CVE-2008-3153
|
2017-09-29 10:31 |
2008-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257537
|
- |
|
webblizzard
|
content_management_system
|
SQL injection vulnerability in index.php in WebBlizzard CMS allows remote attackers to execute arbitrary SQL commands via the page parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3154
|
2017-09-29 10:31 |
2008-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257538
|
- |
|
panda
|
panda_activescan
|
Stack-based buffer overflow in the ActiveX control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3155
|
2017-09-29 10:31 |
2008-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257539
|
- |
|
panda
|
panda_activescan
|
The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary cabinet (CAB) files via unspecified URLs passed to the Updat…
|
NVD-CWE-noinfo CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3156
|
2017-09-29 10:31 |
2008-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257540
|
- |
|
fuzzylime
|
fuzzylime_cms
|
Directory traversal vulnerability in blog.php in fuzzylime (cms) 3.01, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in th…
|
CWE-22
Path Traversal
|
CVE-2008-3164
|
2017-09-29 10:31 |
2008-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|