257611
|
- |
|
mojoscripts
|
mojoclassifieds
|
SQL injection vulnerability in mojoClassified.cgi in MojoClassifieds 2.0 allows remote attackers to execute arbitrary SQL commands via the cat_a parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3382
|
2017-09-29 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257612
|
- |
|
mojoscripts
|
mojoauto
|
SQL injection vulnerability in mojoAuto.cgi in MojoAuto allows remote attackers to execute arbitrary SQL commands via the cat_a parameter in a browse action.
|
CWE-89
SQL Injection
|
CVE-2008-3383
|
2017-09-29 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257613
|
- |
|
linuxwebshop
|
php_help_agent
|
Directory traversal vulnerability in include/head_chat.inc.php in php Help Agent 1.0 and 1.1 Full allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conten…
|
CWE-22
Path Traversal
|
CVE-2008-3385
|
2017-09-29 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257614
|
- |
|
alstrasoft
|
video_share_enterprise
|
SQL injection vulnerability in album.php in AlstraSoft Video Share Enterprise 4.51 allows remote attackers to execute arbitrary SQL commands via the UID parameter, a different vector than CVE-2007-40…
|
CWE-89
SQL Injection
|
CVE-2008-3386
|
2017-09-29 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257615
|
- |
|
phpfootball
|
phpfootball
|
SQL injection vulnerability in show.php in PHPFootball 1.6 allows remote attackers to execute arbitrary SQL commands via the dbtable parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3387
|
2017-09-29 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257616
|
- |
|
mojoscripts
|
mojopersonals
|
SQL injection vulnerability in mojoClassified.cgi in MojoPersonals allows remote attackers to execute arbitrary SQL commands via the cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3403
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257617
|
- |
|
nazgulled
|
nzfotolog
|
Directory traversal vulnerability in index.php in Ricardo Amaral nzFotolog 0.4.1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the action_f…
|
CWE-22
Path Traversal
|
CVE-2008-3405
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257618
|
- |
|
phplinkat
|
phplinkat
|
SQL injection vulnerability in showcat.php in phpLinkat 0.1 allows remote attackers to execute arbitrary SQL commands via the catid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3406
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257619
|
- |
|
phplinkat
|
phplinkat
|
phpLinkat 0.1 allows remote attackers to bypass authentication and access unspecified pages under admin/ by sending a login=right cookie.
|
CWE-287
Improper Authentication
|
CVE-2008-3407
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257620
|
- |
|
coolplayer
|
coolplayer
|
Stack-based buffer overflow in CoolPlayer 2.18, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a crafted m3u file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3408
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|