260331
|
- |
|
lullabot
|
fivestar_module_for_drupal
|
Cross-site request forgery (CSRF) vulnerability in the Fivestar module 5.x-1.x before 5.x-1.14 and 6.x-1.x before 6.x-1.14, a module for Drupal, allows remote attackers to hijack the authentication o…
|
CWE-352
Origin Validation Error
|
CVE-2009-2572
|
2017-08-17 10:30 |
2009-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260332
|
- |
|
editeurscripts
|
esnews
|
Cross-site scripting (XSS) vulnerability in modifier.php in EditeurScripts EsNews 1.2 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2581
|
2017-08-17 10:30 |
2009-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260333
|
- |
|
edgephp
|
ezarticles
|
Cross-site scripting (XSS) vulnerability in articles.php in EDGEPHP EZArticles allows remote attackers to inject arbitrary web script or HTML via the title parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2586
|
2017-08-17 10:30 |
2009-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260334
|
- |
|
dragdropcart
|
dragdropcart
|
Multiple cross-site scripting (XSS) vulnerabilities in DragDropCart allow remote attackers to inject arbitrary web script or HTML via the (1) sid parameter to assets/js/ddcart.php, the (2) prefix par…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2587
|
2017-08-17 10:30 |
2009-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260335
|
- |
|
resalecode
|
hotscripts_type_php_clone_script
|
Multiple cross-site scripting (XSS) vulnerabilities in Hotscripts Type PHP Clone Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) in…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2588
|
2017-08-17 10:30 |
2009-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260336
|
- |
|
resalecode
|
hutscripts_php_website_script
|
Multiple cross-site scripting (XSS) vulnerabilities in Hutscripts PHP Website Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) index…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2589
|
2017-08-17 10:30 |
2009-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260337
|
- |
|
resalecode
|
hutscripts_php_website_script
|
SQL injection vulnerability in showcategory.php in Hutscripts PHP Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2009-2590
|
2017-08-17 10:30 |
2009-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260338
|
- |
|
censura
|
censura
|
Cross-site scripting (XSS) vulnerability in productSearch.html in Censura 2.0.4 and 2.1.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter in a ProductSearch action.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2595
|
2017-08-17 10:30 |
2009-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260339
|
- |
|
acer
|
lunchapp.aplunch
|
Insecure method vulnerability in the Acer LunchApp (aka AcerCtrls.APlunch) ActiveX control in acerctrl.ocx allows remote attackers to execute arbitrary commands via the Run method, a different vulner…
|
CWE-94
Code Injection
|
CVE-2009-2627
|
2017-08-17 10:30 |
2009-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260340
|
- |
|
rim
|
blackberry_enterprise_server blackberry_professional_software
|
Multiple unspecified vulnerabilities in the PDF distiller in the Attachment Service component in Research In Motion (RIM) BlackBerry Enterprise Server (BES) software 4.1.3 through 5.0 and BlackBerry …
|
NVD-CWE-noinfo
|
CVE-2009-2643
|
2017-08-17 10:30 |
2009-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|