257571
|
- |
|
cmsmini
|
cms_mini
|
Multiple directory traversal vulnerabilities in view/index.php in CMS Mini 0.2.2 allow remote attackers to read arbitrary local files via a .. (dot dot) in the (1) path and (2) p parameter.
|
CWE-22
Path Traversal
|
CVE-2008-2961
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257572
|
- |
|
myblog
|
myblog
|
Multiple cross-site scripting (XSS) vulnerabilities in MyBlog allow remote attackers to inject arbitrary web script or HTML via the (1) s and (2) sort parameters to index.php, and the (3) id paramete…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2962
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257573
|
- |
|
myblog
|
myblog
|
Multiple SQL injection vulnerabilities in MyBlog allow remote attackers to execute arbitrary SQL commands via the (1) view parameter to (a) index.php, and the (2) id parameter to (b) member.php and (…
|
CWE-89
SQL Injection
|
CVE-2008-2963
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257574
|
- |
|
researchguide
|
researchguide
|
SQL injection vulnerability in guide.php in ResearchGuide 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2964
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257575
|
- |
|
jaxbot
|
jaxultrabb
|
Cross-site scripting (XSS) vulnerability in viewforum.php in JaxUltraBB (JUBB) 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the forum parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2965
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257576
|
- |
|
jaxultrabb
|
jaxultrabb
|
Directory traversal vulnerability in viewprofile.php in JaxUltraBB 2.0 and earlier allows remote attackers to read arbitrary local files via a .. (dot dot) in the user parameter. party information.
|
CWE-22
Path Traversal
|
CVE-2008-2966
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257577
|
- |
|
cistyle
|
ciblog
|
SQL injection vulnerability in links-extern.php in CiBlog 3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2971
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257578
|
- |
|
mm_chat
|
mm_chat
|
Multiple cross-site scripting (XSS) vulnerabilities in chathead.php in MM Chat 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) sitename and (2) wmessage parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2973
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257579
|
- |
|
mm_chat
|
mm_chat
|
Directory traversal vulnerability in chatconfig.php in MM Chat 1.5, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequ…
|
CWE-22
Path Traversal
|
CVE-2008-2974
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257580
|
- |
|
tinx_cms
|
tinx_cms
|
Cross-site scripting (XSS) vulnerability in admin/objects/obj_image.php in TinX/cms 1.1 allows remote attackers to inject arbitrary web script or HTML via the language parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2975
|
2017-09-29 10:31 |
2008-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|