256561
|
- |
|
turnkeyforms
|
text_link_sales
|
Cross-site scripting (XSS) vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5487
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256562
|
- |
|
e-topbiz
|
domain_shop
|
SQL injection vulnerability in admin.php in E-topbiz Domain Shop 2 allows remote attackers to execute arbitrary SQL commands via the passfromform parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5488
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256563
|
- |
|
clip-share
|
clipshare
|
SQL injection vulnerability in channel_detail.php in ClipShare Pro 4, and 2006 through 2007, allows remote attackers to execute arbitrary SQL commands via the chid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5489
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256564
|
- |
|
phpstore
|
yahoo_answers
|
SQL injection vulnerability in index.php in PHPStore Yahoo Answers allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5490
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256565
|
- |
|
slimcms
|
slimcms
|
SQL injection vulnerability in edit.php in SlimCMS 1.0.0 and earlier allows remote attackers to execute arbitrary SQL commands via the pageID parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5491
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256566
|
- |
|
verypdf
|
verydoc_pdf_viewer
|
Heap-based buffer overflow in the PDFVIEW.PdfviewCtrl.1 ActiveX control in pdfview.ocx 2.0.0.1 in VeryDOC PDF Viewer OCX Control allows remote attackers to execute arbitrary code via a long first arg…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5492
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256567
|
- |
|
phpstore
|
wholesale wholesales
|
SQL injection vulnerability in track.php in PHPStore Wholesales (aka Wholesale) allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5493
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256568
|
- |
|
digitalgreys
|
com_contactinfo
|
SQL injection vulnerability in the Contact Information Module (com_contactinfo) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.ph…
|
CWE-89
SQL Injection
|
CVE-2008-5494
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256569
|
- |
|
pozscripts
|
business_directory_script
|
SQL injection vulnerability in showcategory.php in PozScripts Business Directory Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5496
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256570
|
- |
|
bandsitecms
|
bandsite_cms
|
BandSite CMS 1.1.4 allows remote attackers to bypass authentication and gain administrative access by setting the login_auth cookie to true.
|
CWE-287
Improper Authentication
|
CVE-2008-5497
|
2017-09-29 10:32 |
2008-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|