258941
|
- |
|
datavore
|
gyro
|
SQL injection vulnerability in Datavore Gyro 5.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter in a cat action to the home component.
|
CWE-89
SQL Injection
|
CVE-2009-3349
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258942
|
- |
|
plohni
|
image_voting
|
SQL injection vulnerability in index.php in Image voting 1.0 allows remote attackers to execute arbitrary SQL commands via the show parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3356
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258943
|
- |
|
tourismscripts
|
adult_portal_escort_listing
|
SQL injection vulnerability in profile.php in Tourism Scripts Adult Portal escort listing allows remote attackers to execute arbitrary SQL commands via the user_id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3358
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258944
|
- |
|
paul_gibbs
|
php-ipnmonitor
|
SQL injection vulnerability in index.php in PHP-IPNMonitor allows remote attackers to execute arbitrary SQL commands via the maincat_id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3361
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258945
|
- |
|
ftpshell
|
ftpshell
|
Stack-based buffer overflow in FTPShell Client 4.1 RC2 allows remote FTP servers to execute arbitrary code via a long response to a PASV command.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3364
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258946
|
- |
|
traza
|
aurora
|
PHP remote file inclusion vulnerability in add-ons/modules/sysmanager/plugins/install.plugin.php in Aurora CMS 1.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the AURORA_MODU…
|
CWE-94
Code Injection
|
CVE-2009-3365
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258947
|
- |
|
plohni
|
an_image_gallery
|
Directory traversal vulnerability in navigation.php in An image gallery 1.0 allows remote attackers to list arbitrary directories via a .. (dot dot) in the path parameter.
|
CWE-22
Path Traversal
|
CVE-2009-3366
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258948
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 3.0.15, and 3.5.x before 3.5.4, allows remote attackers to read form history by forging mouse and keyboard events that leverage the auto-fill feature to populate form fields, i…
|
NVD-CWE-Other
|
CVE-2009-3370
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258949
|
- |
|
mozilla
|
firefox
|
Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by creating JavaScript w…
|
CWE-399
Resource Management Errors
|
CVE-2009-3371
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258950
|
- |
|
mozilla
|
firefox
|
The XPCVariant::VariantDataToJS function in the XPCOM implementation in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 does not enforce intended restrictions on interaction between chrome…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3374
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|