256911
|
- |
|
jiro
|
faq_manager_experience
|
SQL injection vulnerability in read.asp in JiRo's FAQ Manager eXperience 1.0 allows remote attackers to execute arbitrary SQL commands via the fID parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2691
|
2017-09-29 10:31 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256912
|
- |
|
joomla
|
com_yvcomment
|
SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a commen…
|
CWE-89
SQL Injection
|
CVE-2008-2692
|
2017-09-29 10:31 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256913
|
- |
|
black_ice
|
barcode_sdk
|
Stack-based buffer overflow in the BITIFF.BITiffCtrl.1 ActiveX control in BITiff.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to execute arbitrary code via a long first argument…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2693
|
2017-09-29 10:31 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256914
|
- |
|
phpinv
|
phpinv
|
Cross-site scripting (XSS) vulnerability in search.php in phpInv 0.8.0 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2694
|
2017-09-29 10:31 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256915
|
- |
|
phpinv
|
phpinv
|
Directory traversal vulnerability in entry.php in phpInv 0.8.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter.
|
CWE-22
Path Traversal
|
CVE-2008-2695
|
2017-09-29 10:31 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256916
|
- |
|
gwm
|
galatolo_webmanager
|
Multiple directory traversal vulnerabilities in Galatolo WebManager (GWM) 1.0 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in (1) the plugin p…
|
CWE-22
Path Traversal
|
CVE-2008-2699
|
2017-09-29 10:31 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256917
|
- |
|
gwm
|
galatolo_webmanager
|
SQL injection vulnerability in view.php in Galatolo WebManager 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2700
|
2017-09-29 10:31 |
2008-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256918
|
- |
|
sun
|
solaris
|
Unspecified vulnerability in the event port implementation in Sun Solaris 10 allows local users to cause a denial of service (panic) by submitting and retrieving user-defined events, probably related…
|
CWE-399
Resource Management Errors
|
CVE-2008-2706
|
2017-09-29 10:31 |
2008-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256919
|
- |
|
achievo
|
achievo
|
Unrestricted file upload in the mcpuk file editor (atk/attributes/fck/editor/filemanager/browser/mcpuk/connectors/php/config.php) in Achievo 1.2.0 through 1.3.2 allows remote attackers to execute arb…
|
CWE-20
Improper Input Validation
|
CVE-2008-2742
|
2017-09-29 10:31 |
2008-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256920
|
- |
|
black_ice
|
annotation_software
|
Stack-based buffer overflow in BiAnno ActiveX Control (BiAnno.ocx) in Black Ice Software Annotation Plugin 10.95 allows remote attackers to execute arbitrary code via a long parameter to the AnnoSave…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2745
|
2017-09-29 10:31 |
2008-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|