267161
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
SQL injection vulnerability in Advanced Guestbook 2.2 allows remote attackers to execute arbitrary SQL commands and gain privileges via the password.
|
NVD-CWE-Other
|
CVE-2004-1952
|
2017-07-11 10:31 |
2004-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267162
|
- |
|
phprofession
|
phprofession
|
phProfession 2.5 allows remote attackers to gain sensitive information via a direct HTTP request to upload.php, which reveals the path in a PHP error message.
|
NVD-CWE-Other
|
CVE-2004-1953
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267163
|
- |
|
phprofession
|
phprofession
|
Cross-site scripting (XSS) vulnerability in modules.php in phProfession 2.5 allows remote attackers to inject arbitrary web script or HTML via the jcode parameter.
|
NVD-CWE-Other
|
CVE-2004-1954
|
2017-07-11 10:31 |
2004-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267164
|
- |
|
phprofession
|
phprofession
|
SQL injection vulnerability in modules.php in phProfession 2.5 allows remote attackers to execute arbitrary SQL code via the offset parameter.
|
NVD-CWE-Other
|
CVE-2004-1955
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267165
|
- |
|
postnuke_software_foundation
|
postnuke
|
PostNuke 0.7.2.6 allows remote attackers to gain information via a direct HTTP request to files in the (1) includes/blocks directory, (2) pnadodb directory, (3) NS-NewUser module, (4) NS-Your_Account…
|
NVD-CWE-Other
|
CVE-2004-1956
|
2017-07-11 10:31 |
2004-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267166
|
- |
|
-
|
-
|
Multiple cross-site scripting (XSS) vulnerabilities in PostNuke 0.726 allows remote attackers to inject arbitrary web script or HTML via the (1) lid and query parameters to the Downloads module, (2) …
|
NVD-CWE-Other
|
CVE-2004-1957
|
2017-07-11 10:31 |
2004-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267167
|
- |
|
epic_games
|
unreal_engine unreal_tournament unreal_tournament_2003
|
Directory traversal vulnerability in manifest.ini in Unreal engine allows remote attackers to overwrite arbitrary files via .. (dot dot) sequences in a UMOD (Unreal MOD) file.
|
NVD-CWE-Other
|
CVE-2004-1958
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267168
|
- |
|
protector_system
|
protector_system
|
blocker_query.php in Protector System 1.15b1 for PHP-Nuke allows remote attackers to gain sensitive information via a string in the portNum parameter, which reveals the full path in an error message.
|
NVD-CWE-Other
|
CVE-2004-1959
|
2017-07-11 10:31 |
2004-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267169
|
- |
|
protector_system
|
protector_system
|
Cross-site scripting (XSS) vulnerability in blocker_query.php in Protector System 1.15b1 allows remote attackers to inject arbitrary web script or HTML via the (1) target or (2) portNum parameters.
|
NVD-CWE-Other
|
CVE-2004-1960
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267170
|
- |
|
protector_system
|
protector_system
|
SQL injection vulnerability in index.php in Protector System 1.15b1 allows remote attackers to bypass SQL injection filters by using "/**/" sequences in the targeted fields.
|
NVD-CWE-Other
|
CVE-2004-1962
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|