257591
|
- |
|
commodityrentals
|
video_games_rentals
|
SQL injection vulnerability in index.php in CommodityRentals Video Games Rentals allows remote attackers to execute arbitrary SQL commands via the pfid parameter in a catalog action.
|
CWE-89
SQL Injection
|
CVE-2010-0690
|
2017-08-17 10:32 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257592
|
- |
|
commodityrentals
|
trade_manager_script
|
SQL injection vulnerability in products.php in CommodityRentals Trade Manager Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2010-0693
|
2017-08-17 10:32 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257593
|
- |
|
percha
|
com_perchagallery
|
SQL injection vulnerability in the PerchaGallery (com_perchagallery) component before 1.5b for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an editunidad …
|
CWE-89
SQL Injection
|
CVE-2010-0694
|
2017-08-17 10:32 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257594
|
- |
|
ilya_ivanchenko
|
itweak_upload
|
Cross-site scripting (XSS) vulnerability in the iTweak Upload module 6.x-1.x before 6.x-1.2 and 6.x-2.x before 6.x-2.3 for Drupal allows remote authenticated users, with create content and upload fil…
|
CWE-79
Cross-site Scripting
|
CVE-2010-0697
|
2017-08-17 10:32 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257595
|
- |
|
dynamicsoft
|
wsc_cms
|
SQL injection vulnerability in backoffice/login.asp in Dynamicsoft WSC CMS 2.2 allows remote attackers to execute arbitrary SQL commands via the Password parameter. NOTE: some of these details are o…
|
CWE-89
SQL Injection
|
CVE-2010-0698
|
2017-08-17 10:32 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257596
|
- |
|
wampserver
|
wampserver
|
Cross-site scripting (XSS) vulnerability in index.php in WampServer 2.0i allows remote attackers to inject arbitrary web script or HTML via the lang parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0700
|
2017-08-17 10:32 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257597
|
- |
|
newgensoft
|
omnidocs
|
SQL injection vulnerability in ForceChangePassword.jsp in Newgen Software OmniDocs allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-0701
|
2017-08-17 10:32 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257598
|
- |
|
subexworld
|
nikira_fraud_management_system
|
Cross-site scripting (XSS) vulnerability in the login/prompt component in Subex Nikira Fraud Management System allows remote attackers to inject arbitrary web script or HTML via the message parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0706
|
2017-08-17 10:32 |
2010-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257599
|
- |
|
timeclock-software
|
employee_timeclock_software
|
Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote attackers to hijack the authentication of an administrator for requests that create n…
|
CWE-352
Origin Validation Error
|
CVE-2010-0707
|
2017-08-17 10:32 |
2010-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257600
|
- |
|
sun
|
java_system_directory_server
|
Multiple unspecified vulnerabilities in (1) ns-slapd and (2) slapd.exe in Sun Directory Server Enterprise Edition 7.0, Sun Java System Directory Server 5.2, and Sun Java System Directory Server Enter…
|
NVD-CWE-noinfo
|
CVE-2010-0708
|
2017-08-17 10:32 |
2010-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|