257981
|
- |
|
dietmar_schffer
|
travelmate
|
SQL injection vulnerability in the Meet Travelmates (travelmate) extension 0.1.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-1027
|
2017-08-17 10:32 |
2010-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257982
|
- |
|
microsoft
|
windows_media_player
|
Microsoft Windows Media Player 11 does not properly perform colorspace conversion, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code vi…
|
NVD-CWE-noinfo
|
CVE-2010-1042
|
2017-08-17 10:32 |
2010-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257983
|
- |
|
manageengine
|
oputils
|
SQL injection vulnerability in Login.do in ManageEngine OpUtils 5.0 allows remote attackers to execute arbitrary SQL commands via the isHttpPort parameter.
|
CWE-89
SQL Injection
|
CVE-2010-1044
|
2017-08-17 10:32 |
2010-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257984
|
- |
|
masa2el
|
music_city
|
SQL injection vulnerability in index.php in MASA2EL Music City 1.0 and 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter in a singer action.
|
CWE-89
SQL Injection
|
CVE-2010-1047
|
2017-08-17 10:32 |
2010-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257985
|
- |
|
zentracking
|
zen_time_tracking
|
Multiple SQL injection vulnerabilities in Zen Time Tracking 2.2 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) p…
|
CWE-89
SQL Injection
|
CVE-2010-1053
|
2017-08-17 10:32 |
2010-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257986
|
- |
|
tufat
|
osdate
|
Multiple PHP remote file inclusion vulnerabilities in osDate 2.1.9 and 2.5.4, when magic_quotes_gpc is disabled and register_globals is enabled, allow remote attackers to execute arbitrary PHP code v…
|
CWE-94
Code Injection
|
CVE-2010-1055
|
2017-08-17 10:32 |
2010-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257987
|
- |
|
rockettheme
|
com_rokdownloads
|
Directory traversal vulnerability in the RokDownloads (com_rokdownloads) component before 1.0.1 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in …
|
CWE-22
Path Traversal
|
CVE-2010-1056
|
2017-08-17 10:32 |
2010-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257988
|
- |
|
phpkobo
|
adfreely
|
Multiple directory traversal vulnerabilities in Phpkobo AdFreely (aka Ad Board Script) 1.01, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via…
|
CWE-22
Path Traversal
|
CVE-2010-1057
|
2017-08-17 10:32 |
2010-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257989
|
- |
|
phpkobo
|
address_book_script
|
Directory traversal vulnerability in codelib/cfg/common.inc.php in Phpkobo Address Book Script 1.09, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local …
|
CWE-22
Path Traversal
|
CVE-2010-1058
|
2017-08-17 10:32 |
2010-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257990
|
- |
|
aspindir
|
erolife_ajxgaleri_vt
|
Erolife AjxGaleri VT stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/ajxgaleri.mdb.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-1064
|
2017-08-17 10:32 |
2010-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|