264341
|
- |
|
lawson_software
|
lawson_financials
|
Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a world-readable file, which allows local users to read the passwords and log onto t…
|
CWE-255
Credentials Management
|
CVE-2002-2301
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264342
|
- |
|
3d3.com
|
shopfactory
|
3D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying the price in a hidden form field.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2002-2302
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264343
|
- |
|
3d3.com
|
shopfactory
|
3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie…
|
CWE-310
Cryptographic Issues
|
CVE-2002-2303
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264344
|
- |
|
myphpsoft
|
myphplinks
|
SQL injection vulnerability in admin/auth/checksession.php in MyPHPLinks 2.1.9 and 2.2.0 allows remote attackers to execute arbitrary SQL commands via the idsession parameter.
|
CWE-89
SQL Injection
|
CVE-2002-2304
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264345
|
- |
|
phpsecure.org
|
immobilier
|
SQL injection vulnerability in agentadmin.php in Immobilier allows remote attackers to execute arbitrary SQL commands via the (1) agentname or (2) agentpassword parameter.
|
CWE-89
SQL Injection
|
CVE-2002-2305
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264346
|
- |
|
kazaa
|
kazaa_media_desktop
|
Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sending several large messages.
|
CWE-399
Resource Management Errors
|
CVE-2002-2306
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264347
|
- |
|
f2html.pl
|
f2html.pl
|
SQL injection vulnerability in f2html.pl 0.1 through 0.4 allows remote attackers to execute arbitrary SQL commands via file names.
|
CWE-89
SQL Injection
|
CVE-2002-2383
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264348
|
- |
|
bannerwheel
|
bannerwheel
|
Buffer overflow in badmin.c in BannerWheel 1.0 allows remote attackers to execute arbitrary code via a long rcmd command.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2002-2411
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264349
|
- |
|
oracle
|
diagnostics e-business_suite
|
SQL injection vulnerability in the Oracle Diagnostics module 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via unknown attack vectors.
|
NVD-CWE-Other
|
CVE-2006-1037
|
2017-07-21 10:29 |
2006-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264350
|
- |
|
betaparticle
|
betaparticle_blog
|
Multiple SQL injection vulnerabilities in BetaParticle Blog 6.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to template_permalink.asp or (2) fldGalle…
|
NVD-CWE-Other
|
CVE-2006-1333
|
2017-07-21 10:29 |
2006-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|