260691
|
- |
|
blognplus
|
blognplus
|
Multiple SQL injection vulnerabilities in index.php in BlognPlus (BURO GUN +) 2.5.5 MySQL and PostgreSQL editions allow remote attackers to execute arbitrary SQL commands via the (1) p, (2) e, (3) d,…
|
CWE-89
SQL Injection
|
CVE-2008-3090
|
2017-08-8 10:31 |
2008-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260692
|
- |
|
drupal
|
taxonomy_autotagger_module
|
Cross-site scripting (XSS) vulnerability in the Taxonomy Autotagger module 5.x before 5.x-1.8 for Drupal allows remote authenticated users, with create or edit post permissions, to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3091
|
2017-08-8 10:31 |
2008-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260693
|
- |
|
drupal
|
taxonomy_autotagger_module
|
SQL injection vulnerability in the Taxonomy Autotagger module 5.x before 5.x-1.8 for Drupal allows remote authenticated users, with create or edit post permissions, to execute arbitrary SQL commands …
|
CWE-89
SQL Injection
|
CVE-2008-3092
|
2017-08-8 10:31 |
2008-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260694
|
- |
|
drupal
|
organic_groups_module
|
Cross-site scripting (XSS) vulnerability in the Organic Groups (OG) module 5.x before 5.x-7.3 and 6.x before 6.x-1.0-RC1, a module for Drupal, allows remote authenticated users, with group owner perm…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3095
|
2017-08-8 10:31 |
2008-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260695
|
- |
|
drupal
|
outline_designer_module
|
The Outline Designer module 5.x before 5.x-1.4 for Drupal changes each content reader's authentication level to match that of the content author, which might allow remote attackers to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3096
|
2017-08-8 10:31 |
2008-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260696
|
- |
|
drupal
|
tinytax_taxonomy_block_module
|
Cross-site scripting (XSS) vulnerability in the Tinytax module (aka Tinytax taxonomy block) 5.x before 5.x-1.10-1 for Drupal allows remote authenticated users to inject arbitrary web script or HTML, …
|
CWE-79
Cross-site Scripting
|
CVE-2008-3097
|
2017-08-8 10:31 |
2008-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260697
|
- |
|
xerox
|
centreware_web
|
Multiple cross-site scripting (XSS) vulnerabilities in Xerox CentreWare Web (CWW) before 4.6.46 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3121
|
2017-08-8 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260698
|
- |
|
xerox
|
centreware_web
|
Multiple SQL injection vulnerabilities in Xerox CentreWare Web (CWW) before 4.6.46 allow remote authenticated users to execute arbitrary SQL commands via the unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2008-3122
|
2017-08-8 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260699
|
- |
|
fujitsu
|
serverview
|
Multiple stack-based buffer overflows in the ServerView web interface (SnmpGetMibValues.exe) in Fujitsu Siemens Computers ServerView 04.60.07 and earlier allow remote authenticated users to execute a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3126
|
2017-08-8 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260700
|
- |
|
simple_machines
|
opencart
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in OpenCart 0.7.7 allow remote attackers to inject arbitrary web script or HTML via the (1) firstname and (2) search parameters. NOTE…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3130
|
2017-08-8 10:31 |
2008-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|