257721
|
- |
|
pars4u
|
videosharing
|
SQL injection vulnerability in categories_portal.php in Pars4u Videosharing 1 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3772
|
2017-09-29 10:31 |
2008-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257722
|
- |
|
review-script
|
five_star_review_script
|
Cross-site scripting (XSS) vulnerability in search/index.php in Five Star Review Script allows remote attackers to inject arbitrary web script or HTML via the words parameter in a search action.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3779
|
2017-09-29 10:31 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257723
|
- |
|
review-script
|
five_star_review_script
|
SQL injection vulnerability in recommend.php in Five Star Review Script allows remote attackers to execute arbitrary SQL commands via the item_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3780
|
2017-09-29 10:31 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257724
|
- |
|
matterdaddy
|
matterdaddy_market
|
Multiple SQL injection vulnerabilities in index.php in Matterdaddy Market 1.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) category and (2)…
|
CWE-89
SQL Injection
|
CVE-2008-3783
|
2017-09-29 10:31 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257725
|
- |
|
miacms
|
miacms
|
Multiple SQL injection vulnerabilities in the com_content component in MiaCMS 4.6.5 allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) view, (2) category, or (3) b…
|
CWE-89
SQL Injection
|
CVE-2008-3785
|
2017-09-29 10:31 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257726
|
- |
|
nullscripts
|
web_directory_script
|
SQL injection vulnerability in listing_view.php in Web Directory Script 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the name parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3787
|
2017-09-29 10:31 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257727
|
- |
|
picturespro
|
picturespro_photo_cart
|
Multiple SQL injection vulnerabilities in PICTURESPRO Photo Cart 3.9, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) qtitle, (2) qid, and (3) …
|
CWE-89
SQL Injection
|
CVE-2008-3788
|
2017-09-29 10:31 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257728
|
- |
|
videolan
|
vlc_media_player
|
Integer signedness error in the mms_ReceiveCommand function in modules/access/mms/mmstu.c in VLC Media Player 0.8.6i allows remote attackers to execute arbitrary code via a crafted mmst link with a n…
|
CWE-189
Numeric Errors
|
CVE-2008-3794
|
2017-09-29 10:31 |
2008-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257729
|
- |
|
ipswitch
|
ws_ftp_home
|
Buffer overflow in Ipswitch WS_FTP Home client allows remote FTP servers to have an unknown impact via a long "message response."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3795
|
2017-09-29 10:31 |
2008-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257730
|
- |
|
cisco
|
ios
|
Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of service (device reload) via segmented SCCP message…
|
CWE-20
Improper Input Validation
|
CVE-2008-3810
|
2017-09-29 10:31 |
2008-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|