262891
|
- |
|
apple
|
safari iphone_os
|
Apple Safari on iPhone OS 3.0.1 allows remote attackers to cause a denial of service (application crash) via a long tel: URL in the SRC attribute of an IFRAME element.
|
CWE-20
Improper Input Validation
|
CVE-2009-3271
|
2017-09-19 10:29 |
2009-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262892
|
- |
|
apple
|
safari
|
Stack consumption vulnerability in WebKit.dll in WebKit in Apple Safari 3.2.3, and possibly other versions before 4.1.2, allows remote attackers to cause a denial of service (application crash) via J…
|
CWE-399
Resource Management Errors
|
CVE-2009-3272
|
2017-09-19 10:29 |
2009-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262893
|
- |
|
frank_lichtenheld
|
fsphp
|
Multiple PHP remote file inclusion vulnerabilities in FSphp 0.2.1 allow remote attackers to execute arbitrary PHP code via a URL in the FSPHP_LIB parameter to (1) FSphp.php, (2) navigation.php, and (…
|
CWE-94
Code Injection
|
CVE-2009-3307
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262894
|
- |
|
fanupdate
|
fanupdate
|
SQL injection vulnerability in show-cat.php in FanUpdate 2.2.1 allows remote attackers to execute arbitrary SQL commands via the listingid parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3308
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262895
|
- |
|
cfshopkart
|
cf_shopkart
|
SQL injection vulnerability in index.cfm in CF ShopKart 5.4 beta allows remote attackers to execute arbitrary SQL commands via the itemid parameter in a ViewDetails action, a different vector than CV…
|
CWE-89
SQL Injection
|
CVE-2009-3309
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262896
|
- |
|
shalwan
|
zainu
|
SQL injection vulnerability in index.php in Zainu 1.0 allows remote attackers to execute arbitrary SQL commands via the album_id parameter in an AlbumSongs action.
|
CWE-89
SQL Injection
|
CVE-2009-3310
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262897
|
- |
|
tomex
|
phppollscript
|
PHP remote file inclusion vulnerability in php/init.poll.php in phpPollScript 1.3 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a crafted UR…
|
CWE-94
Code Injection
|
CVE-2009-3312
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262898
|
- |
|
fmyclone
|
fmyclone
|
Multiple SQL injection vulnerabilities in FMyClone 2.3 allow remote attackers to execute arbitrary SQL commands via the comp parameter to (1) index.php and (2) editComments.php, and (3) allow remote …
|
CWE-89
SQL Injection
|
CVE-2009-3313
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262899
|
- |
|
eliteladders
|
elite_gaming_ladders
|
SQL injection vulnerability in ladders.php in Elite Gaming Ladders 3.2 allows remote attackers to execute arbitrary SQL commands via the platform parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3314
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262900
|
- |
|
nelogic
|
nephp_publisher
|
SQL injection vulnerability in admin/index.php in NeLogic Nephp Publisher Enterprise 3.5.9 and 4.5 allows remote attackers to execute arbitrary SQL commands via the Username field.
|
CWE-89
SQL Injection
|
CVE-2009-3315
|
2017-09-19 10:29 |
2009-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|