256891
|
- |
|
fkrauthan
|
phoenix_view_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Phoenix View CMS Pre Alpha2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) ltarget parameter to (a) admin…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2533
|
2017-09-29 10:31 |
2008-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256892
|
- |
|
fkrauthan
|
phoenix_view_cms
|
Directory traversal vulnerability in admin/admin_frame.php in Phoenix View CMS Pre Alpha2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lt…
|
CWE-22
Path Traversal
|
CVE-2008-2534
|
2017-09-29 10:31 |
2008-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256893
|
- |
|
fkrauthan
|
phoenix_view_cms
|
Multiple SQL injection vulnerabilities in Phoenix View CMS Pre Alpha2 and earlier allow remote attackers to execute arbitrary SQL commands via the del parameter to (1) gbuch.admin.php, (2) links.admi…
|
CWE-89
SQL Injection
|
CVE-2008-2535
|
2017-09-29 10:31 |
2008-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256894
|
- |
|
yabsoft
|
advanced_image_hosting_script
|
SQL injection vulnerability in out.php in YABSoft Advanced Image Hosting (AIH) Script 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the t parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2536
|
2017-09-29 10:31 |
2008-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256895
|
- |
|
hispah
|
model_search
|
SQL injection vulnerability in cat.php in HispaH Model Search allows remote attackers to execute arbitrary SQL commands via the cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2537
|
2017-09-29 10:31 |
2008-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256896
|
- |
|
sun
|
solaris
|
Unspecified vulnerability in crontab on Sun Solaris 8 through 10, and OpenSolaris before snv_93, allows local users to insert cron jobs into the crontab files of arbitrary users via unspecified vecto…
|
CWE-362
Race Condition
|
CVE-2008-2538
|
2017-09-29 10:31 |
2008-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256897
|
- |
|
adobe
|
acrobat_reader
|
Adobe Acrobat Reader 8.1.2 and earlier, and before 7.1.1, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a malformed PDF document, as…
|
NVD-CWE-noinfo
|
CVE-2008-2549
|
2017-09-29 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256898
|
- |
|
easyway
|
cms
|
SQL injection vulnerability in index.php in EasyWay CMS allows remote attackers to execute arbitrary SQL commands via the mid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2555
|
2017-09-29 10:31 |
2008-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256899
|
- |
|
easyway
|
cms
|
Additional resources found during analysis:
http://secunia.com/advisories/30494/
|
CWE-89
SQL Injection
|
CVE-2008-2555
|
2017-09-29 10:31 |
2008-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256900
|
- |
|
hessel_brouwer
|
php_visit_counter
|
SQL injection vulnerability in read.php in PHP Visit Counter 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the datespan parameter in a read action.
|
CWE-89
SQL Injection
|
CVE-2008-2556
|
2017-09-29 10:31 |
2008-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|