264241
|
- |
|
atthat.com
|
thatware
|
PHP remote file inclusion vulnerability in config.php in Thatware 0.3 through 0.5.3 allows remote attackers to execute arbitrary PHP code via the root_path parameter.
|
CWE-94
Code Injection
|
CVE-2002-2298
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264242
|
- |
|
atthat.com
|
thatware
|
PHP remote file inclusion vulnerability in thatfile.php in Thatware 0.3 through 0.5.2 allows remote attackers to execute arbitrary PHP code via the root_path parameter.
|
CWE-94
Code Injection
|
CVE-2002-2299
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264243
|
- |
|
3com
|
webbngss3nbxnts
|
Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial of service (crash) via a long CEL command.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2002-2300
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264244
|
- |
|
lawson_software
|
lawson_financials
|
Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a world-readable file, which allows local users to read the passwords and log onto t…
|
CWE-255
Credentials Management
|
CVE-2002-2301
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264245
|
- |
|
3d3.com
|
shopfactory
|
3D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying the price in a hidden form field.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2002-2302
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264246
|
- |
|
3d3.com
|
shopfactory
|
3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie…
|
CWE-310
Cryptographic Issues
|
CVE-2002-2303
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264247
|
- |
|
myphpsoft
|
myphplinks
|
SQL injection vulnerability in admin/auth/checksession.php in MyPHPLinks 2.1.9 and 2.2.0 allows remote attackers to execute arbitrary SQL commands via the idsession parameter.
|
CWE-89
SQL Injection
|
CVE-2002-2304
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264248
|
- |
|
phpsecure.org
|
immobilier
|
SQL injection vulnerability in agentadmin.php in Immobilier allows remote attackers to execute arbitrary SQL commands via the (1) agentname or (2) agentpassword parameter.
|
CWE-89
SQL Injection
|
CVE-2002-2305
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264249
|
- |
|
kazaa
|
kazaa_media_desktop
|
Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sending several large messages.
|
CWE-399
Resource Management Errors
|
CVE-2002-2306
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264250
|
- |
|
f2html.pl
|
f2html.pl
|
SQL injection vulnerability in f2html.pl 0.1 through 0.4 allows remote attackers to execute arbitrary SQL commands via file names.
|
CWE-89
SQL Injection
|
CVE-2002-2383
|
2017-07-29 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|