258801
|
- |
|
heartlogic
|
hl-sitemanager
|
Per: http://jvndb.jvn.jp/en/contents/2010/JVNDB-2010-000010.html
'[Do not use HL-SiteManager]
As patches will not be provided, users are recommended to discontinue use of HL-SiteManager and s…
|
CWE-89
SQL Injection
|
CVE-2010-1331
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258802
|
- |
|
prettybook
|
prettyformmail
|
Cross-site scripting (XSS) vulnerability in PrettyBook PrettyFormMail allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2010-1332
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258803
|
- |
|
prettybook
|
prettyformmail
|
Per: http://jvndb.jvn.jp/en/contents/2010/JVNDB-2010-000007.html
'Solution
[Do not use PrettyFormMail]
As patches will not be provided, users are recommended to discontinue use of Pretty…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1332
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258804
|
- |
|
almas
|
compiere
|
Multiple cross-site scripting (XSS) vulnerabilities in Almas Inc. Compiere J300_A02 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2010-1333
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258805
|
- |
|
miftahovn
|
insky_cms
|
Multiple PHP remote file inclusion vulnerabilities in Insky CMS 006-0111, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the ROOT parameter to (1)…
|
CWE-94
Code Injection
|
CVE-2010-1335
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258806
|
- |
|
invohost
|
invohost
|
Multiple SQL injection vulnerabilities in INVOhost 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) newlanguage parameters to site.php, (3) search parameter to manu…
|
CWE-89
SQL Injection
|
CVE-2010-1336
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258807
|
- |
|
lussumo
|
vanilla
|
Multiple PHP remote file inclusion vulnerabilities in definitions.php in Lussumo Vanilla 1.1.10, and possibly 0.9.2 and other versions, allow remote attackers to execute arbitrary PHP code via a URL …
|
CWE-94
Code Injection
|
CVE-2010-1337
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258808
|
- |
|
robertotto
|
teamsite_hack_plugin
|
SQL injection vulnerability in ts_other.php in the Teamsite Hack plugin 3.0 and earlier for WoltLab Burning Board allows remote attackers to execute arbitrary SQL commands via the userid parameter in…
|
CWE-89
SQL Injection
|
CVE-2010-1338
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258809
|
- |
|
joomla-research
|
com_jresearch
|
Directory traversal vulnerability in jresearch.php in the J!Research (com_jresearch) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller paramet…
|
CWE-22
Path Traversal
|
CVE-2010-1340
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258810
|
- |
|
systemsoftware
|
community_black_forum
|
SQL injection vulnerability in index.php in Systemsoftware Community Black Forum allows remote attackers to execute arbitrary SQL commands via the s_flaeche parameter.
|
CWE-89
SQL Injection
|
CVE-2010-1341
|
2017-08-17 10:32 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|