259071
|
- |
|
nazgulled
|
nzfotolog
|
Directory traversal vulnerability in index.php in Ricardo Amaral nzFotolog 0.4.1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the action_f…
|
CWE-22
Path Traversal
|
CVE-2008-3405
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259072
|
- |
|
phplinkat
|
phplinkat
|
SQL injection vulnerability in showcat.php in phpLinkat 0.1 allows remote attackers to execute arbitrary SQL commands via the catid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3406
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259073
|
- |
|
phplinkat
|
phplinkat
|
phpLinkat 0.1 allows remote attackers to bypass authentication and access unspecified pages under admin/ by sending a login=right cookie.
|
CWE-287
Improper Authentication
|
CVE-2008-3407
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259074
|
- |
|
coolplayer
|
coolplayer
|
Stack-based buffer overflow in CoolPlayer 2.18, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a crafted m3u file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3408
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259075
|
- |
|
ecshop
|
epshop
|
SQL injection vulnerability in Comsenz EPShop (aka ECShop) before 3.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter in a (1) pro_show or (2) disppro action to the de…
|
CWE-89
SQL Injection
|
CVE-2008-3412
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259076
|
- |
|
greatclone
|
auction_platinum
|
SQL injection vulnerability in category.php in Greatclone GC Auction Platinum allows remote attackers to execute arbitrary SQL commands via the cate_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3413
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259077
|
- |
|
greatclone
|
auction_platinum
|
Additional source found during analysis:
http://www.securityfocus.com/bid/30389
|
CWE-89
SQL Injection
|
CVE-2008-3413
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259078
|
- |
|
siteadmin
|
cms
|
SQL injection vulnerability in line2.php in SiteAdmin allows remote attackers to execute arbitrary SQL commands via the art parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3414
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259079
|
- |
|
siteadmin
|
cms
|
Additional source found during analysis:
http://www.securityfocus.com/bid/30391
|
CWE-89
SQL Injection
|
CVE-2008-3414
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259080
|
- |
|
cmscout
|
cmscout
|
Directory traversal vulnerability in common.php in CMScout 2.05, when .htaccess is not supported, allows remote attackers to include and execute arbitrary local files via directory traversal sequence…
|
CWE-22
Path Traversal
|
CVE-2008-3415
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|