257771
|
- |
|
zanfi_solutions
|
autodealers_cms_autonline
|
SQL injection vulnerability in index.php in Zanfi Autodealers CMS AutOnline allows remote attackers to execute arbitrary SQL commands via the pageid parameter in a DBpAGE action.
|
CWE-89
SQL Injection
|
CVE-2008-4073
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257772
|
- |
|
zanfi_solutions
|
autodealers_cms_autonline
|
SQL injection vulnerability in index.php in Zanfi Autodealers CMS AutOnline allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.
|
CWE-89
SQL Injection
|
CVE-2008-4074
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257773
|
- |
|
dino
|
d-iscussion_board
|
Directory traversal vulnerability in index.php in D-iscussion Board 3.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the topic parameter.
|
CWE-22
Path Traversal
|
CVE-2008-4075
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257774
|
- |
|
stash
|
stash
|
admin/login.php in Stash 1.0.3 allows remote attackers to bypass authentication and gain administrative access by setting a bsm cookie.
|
CWE-287
Improper Authentication
|
CVE-2008-4081
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257775
|
- |
|
brim-project
|
brim
|
SQL injection vulnerability in the Tasks plugin in Brim 2.0.0, when magic_quotes_gpc is disabled, allows remote authenticated users to execute arbitrary SQL commands via an arbitrary field in a searc…
|
CWE-89
SQL Injection
|
CVE-2008-4082
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257776
|
- |
|
brim-project
|
brim
|
Cross-site scripting (XSS) vulnerability in the Bookmarks plugin in Brim 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the name parameter in an addItemPost action t…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4083
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257777
|
- |
|
myiosoft
|
easyclassifields
|
SQL injection vulnerability in staticpages/easyclassifields/index.php in MyioSoft EasyClassifields 3.0 allows remote attackers to execute arbitrary SQL commands via the go parameter in a browse actio…
|
CWE-89
SQL Injection
|
CVE-2008-4084
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257778
|
- |
|
source_workshop
|
reciprocal_links_manager
|
SQL injection vulnerability in index.php in Reciprocal Links Manager 1.1 allows remote attackers to execute arbitrary SQL commands via the site parameter in an open action.
|
CWE-89
SQL Injection
|
CVE-2008-4086
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257779
|
- |
|
acoustica
|
beatcraft
|
Stack-based buffer overflow in Acoustica Beatcraft 1.02 Build 19 allows user-assisted attackers to cause a denial of service or execute arbitrary code via a Beatcraft Project (aka bcproj) file with a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4087
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257780
|
- |
|
myphpnuke
|
myphpnuke
|
SQL injection vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the sid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4088
|
2017-09-29 10:31 |
2008-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|