256691
|
- |
|
systementor
|
postcardmentor
|
SQL injection vulnerability in step1.asp in Systementor PostcardMentor allows remote attackers to execute arbitrary SQL commands via the cat_fldAuto parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2132
|
2017-09-29 10:31 |
2008-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256692
|
- |
|
openoffice
|
openoffice.org
|
Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in OpenOffice.org (OOo) 2.0 through 2.4 allows remote attackers to execute arbitrary code via a crafted file that …
|
CWE-189
Numeric Errors
|
CVE-2008-2152
|
2017-09-29 10:31 |
2008-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256693
|
- |
|
tftp
|
tftp_server_sp
|
Buffer overflow in TFTP Server SP 1.4 and 1.5 on Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a long TFTP error packet. NOTE: some of these details are…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2161
|
2017-09-29 10:31 |
2008-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256694
|
- |
|
gamma_scripts
|
blogme_php
|
SQL injection vulnerability in comments.php in Gamma Scripts BlogMe PHP 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2175
|
2017-09-29 10:31 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256695
|
- |
|
php_directory_source
|
phpdirectorysource
|
Multiple SQL injection vulnerabilities in phpDirectorySource 1.1.06, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) lid parameter to show.php …
|
CWE-89
SQL Injection
|
CVE-2008-2177
|
2017-09-29 10:31 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256696
|
- |
|
cplinks
|
cplinks
|
Multiple SQL injection vulnerabilities in cpLinks 1.03, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) admin_username parameter (aka the usern…
|
CWE-89
SQL Injection
|
CVE-2008-2180
|
2017-09-29 10:31 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256697
|
- |
|
cplinks
|
cplinks
|
Multiple cross-site scripting (XSS) vulnerabilities in search.php in cpLinks 1.03 allow remote attackers to inject arbitrary web script or HTML via the (1) search_text and (2) search_category paramet…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2181
|
2017-09-29 10:31 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256698
|
- |
|
toocharger
|
smartblog
|
SQL injection vulnerability in index.php in SMartBlog (aka SMBlog) 1.3 allows remote attackers to execute arbitrary SQL commands via the idt parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2183
|
2017-09-29 10:31 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256699
|
- |
|
itcms
|
itcms
|
Static code injection vulnerability in box/minichat/boxpop.php in IT!CMS (aka itcms) 1.9 allows remote attackers to inject arbitrary PHP code into box/MiniChat/data/shouts.php via the shout parameter.
|
CWE-94
Code Injection
|
CVE-2008-2192
|
2017-09-29 10:31 |
2008-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256700
|
- |
|
scorpnews
|
scorpnews
|
PHP remote file inclusion vulnerability in example.php in Thomas Gossmann ScorpNews 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the site parameter.
|
CWE-94
Code Injection
|
CVE-2008-2193
|
2017-09-29 10:31 |
2008-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|