270081
|
- |
|
scponly
|
scponly
|
scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute code by invoking dangerous subcommands including (1) unison, (2) rsync, (3) svn, and (4) svnserve…
|
NVD-CWE-noinfo CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-6350
|
2011-08-8 13:00 |
2007-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270082
|
- |
|
x-scripts
|
x-poll
|
SQL injection vulnerability in top.php in X-Scripts X-Poll, probably 2.30, allows remote attackers to execute arbitrary SQL commands via the poll parameter. NOTE: the provenance of this information …
|
CWE-89
SQL Injection
|
CVE-2006-3960
|
2011-08-5 13:00 |
2006-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270083
|
- |
|
newsboard
|
unclassified_newsboard
|
SQL injection vulnerability in search.inc.php in Unclassified NewsBoard before 1.5.3 Patch 4 allows remote attackers to execute arbitrary SQL commands via the (1) DateFrom or (2) DateUntil parameter …
|
CWE-89
SQL Injection
|
CVE-2005-3686
|
2011-08-5 13:00 |
2005-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270084
|
- |
|
phpcomasy
|
phpcomasy
|
SQL injection vulnerability in index.php in phpComasy 0.7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: an examination of the 0.7.5 source code …
|
CWE-89
SQL Injection
|
CVE-2005-3744
|
2011-08-5 13:00 |
2005-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270085
|
- |
|
tru-zone
|
nukeet
|
SQL injection vulnerability in the Search module in Tru-Zone Nuke ET 3.2, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the query parameter.
|
CWE-89
SQL Injection
|
CVE-2005-3748
|
2011-08-5 13:00 |
2005-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270086
|
- |
|
omnistar_interactive
|
omnistar_live
|
SQL injection vulnerability in kb.php in Omnistar Live 5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category_id parameter. NOTE: due to a typo, an…
|
CWE-89
SQL Injection
|
CVE-2005-3840
|
2011-08-5 13:00 |
2005-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270087
|
- |
|
altantisfaq
|
altantis_knowledge_base_software
|
SQL injection vulnerability in search.php in AtlantisFAQ Knowledge Base Software 2.03 and earlier allows remote attackers to execute arbitrary SQL commands via the searchStr parameter.
|
CWE-89
SQL Injection
|
CVE-2005-3881
|
2011-08-5 13:00 |
2005-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270088
|
- |
|
cfmagic
|
magic_list_pro
|
SQL injection vulnerability in view_archive.cfm in CFMagic Magic List Pro 2.5 allows remote attackers to execute arbitrary SQL commands via the ListID parameter.
|
CWE-89
SQL Injection
|
CVE-2005-4073
|
2011-08-5 13:00 |
2005-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270089
|
- |
|
kde
|
kdegraphics
|
Stack consumption vulnerability in the KFILE JPEG (kfile_jpeg) plugin in kdegraphics 3, as used by konqueror, digikam, and other KDE image browsers, allows remote attackers to cause a denial of servi…
|
CWE-399
Resource Management Errors
|
CVE-2006-6297
|
2011-08-4 13:00 |
2006-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270090
|
- |
|
mimms xine
|
mimms xine-lib
|
Stack-based buffer overflow in libmms, as used by (a) MiMMS 0.0.9 and (b) xine-lib 1.1.0 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arb…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-2200
|
2011-08-2 13:00 |
2006-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|