256851
|
- |
|
tinx_cms
|
tinx_cms
|
Cross-site scripting (XSS) vulnerability in admin/objects/obj_image.php in TinX/cms 1.1 allows remote attackers to inject arbitrary web script or HTML via the language parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2975
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256852
|
- |
|
tinx_cms
|
tinx_cms
|
Multiple directory traversal vulnerabilities in TinX/cms 1.1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences i…
|
CWE-22
Path Traversal
|
CVE-2008-2976
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256853
|
- |
|
ourvideo_cms
|
ourvideo_cms
|
Multiple PHP remote file inclusion vulnerabilities in Ourvideo CMS 9.5 allow remote attackers to execute arbitrary PHP code via a URL in the include_connection parameter to (1) edit_top_feature.php a…
|
CWE-94
Code Injection
|
CVE-2008-2977
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256854
|
- |
|
ourvideocms
|
ourvideo_cms
|
Directory traversal vulnerability in phpi/rss.php in Ourvideo CMS 9.5, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal s…
|
CWE-22
Path Traversal
|
CVE-2008-2978
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256855
|
- |
|
ourvideo_cms
|
ourvideo_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in phpi/login.php in Ourvideo CMS 9.5 allow remote attackers to inject arbitrary web script or HTML via the (1) top_page and (2) end_page parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2979
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256856
|
- |
|
homeph_design
|
homeph_design
|
Multiple cross-site scripting (XSS) vulnerabilities in HomePH Design 2.10 RC2 allow remote attackers to inject arbitrary web script or HTML via the (1) error_meldung parameter to admin/features/regis…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2980
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256857
|
- |
|
homeph_design
|
homeph_design
|
PHP remote file inclusion vulnerability in admin/templates/template_thumbnail.php in HomePH Design 2.10 RC2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code vi…
|
CWE-94
Code Injection
|
CVE-2008-2981
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256858
|
- |
|
homeph_design
|
homeph_design
|
Multiple directory traversal vulnerabilities in HomePH Design 2.10 RC2, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal s…
|
CWE-22
Path Traversal
|
CVE-2008-2982
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256859
|
- |
|
cwh_underground
|
demo4_cms
|
SQL injection vulnerability in index.php in Demo4 CMS 01 Beta allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2983
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256860
|
- |
|
cmreams
|
cmreams_cms
|
Cross-site scripting (XSS) vulnerability in backend/umleitung.php in CMReams CMS 1.3.1.1 Beta 2 allows remote attackers to inject arbitrary web script or HTML via the lang[be_red_text] parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2984
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|