256601
|
- |
|
deltascripts
|
php_classifieds
|
SQL injection vulnerability in detail.php in DeltaScripts PHP Classifieds 7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the siteid parameter, a different vector than C…
|
CWE-89
SQL Injection
|
CVE-2008-5805
|
2017-09-29 10:32 |
2008-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256602
|
- |
|
deltascripts
|
php_classifieds
|
SQL injection vulnerability in login.php in DeltaScripts PHP Classifieds 7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the admin_username parameter (aka admin field). …
|
CWE-89
SQL Injection
|
CVE-2008-5806
|
2017-09-29 10:32 |
2008-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256603
|
- |
|
joomla
|
com_paxgallery
|
SQL injection vulnerability in the PaxGallery (com_paxgallery) component 0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gid parameter in a table action to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-5811
|
2017-09-29 10:32 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256604
|
- |
|
phpalumni
|
phpalumni
|
SQL injection vulnerability in Acomment.php in phpAlumni allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5815
|
2017-09-29 10:32 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256605
|
- |
|
ilias
|
ilias
|
SQL injection vulnerability in repository.php in ILIAS 3.7.4 and earlier allows remote attackers to execute arbitrary SQL commands via the ref_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5816
|
2017-09-29 10:32 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256606
|
- |
|
web_scribble_solutions
|
webclassifieds
|
Multiple SQL injection vulnerabilities in index.php in Web Scribble Solutions webClassifieds 2005 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) password fields in …
|
CWE-89
SQL Injection
|
CVE-2008-5817
|
2017-09-29 10:32 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256607
|
- |
|
edreamers
|
edcontainer
|
Directory traversal vulnerability in index.php in eDreamers eDContainer 2.22, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot…
|
CWE-22
Path Traversal
|
CVE-2008-5818
|
2017-09-29 10:32 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256608
|
- |
|
edreamers
|
ednews
|
Directory traversal vulnerability in eDNews_archive.php in eDreamers eDNews 2, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot do…
|
CWE-22
Path Traversal
|
CVE-2008-5819
|
2017-09-29 10:32 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256609
|
- |
|
edreamers
|
ednews
|
SQL injection vulnerability in eDNews_view.php in eDreamers eDNews 2 allows remote attackers to execute arbitrary SQL commands via the newsid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5820
|
2017-09-29 10:32 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256610
|
- |
|
phpicalendar
|
phpicalendar phpicalendar2.0
|
PHP iCalendar 2.24 and earlier allows remote attackers to bypass authentication by setting the phpicalendar and phpicalendar_login cookies to 1.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5840
|
2017-09-29 10:32 |
2009-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|