256881
|
- |
|
joomla
|
com_rssreader
|
PHP remote file inclusion vulnerability in admin.rssreader.php in the Simple RSS Reader (com_rssreader) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in th…
|
CWE-94
Code Injection
|
CVE-2008-5053
|
2017-09-29 10:32 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256882
|
- |
|
modernbill
|
modernbill
|
Cross-site scripting (XSS) vulnerability in index.php in ModernBill 4.4 and earlier allows remote attackers to inject arbitrary web script or HTML via a Javascript event in the new_language parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5059
|
2017-09-29 10:32 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256883
|
- |
|
modernbill
|
modernbill
|
ModernBill has changed their name to Parallels Plesk Billing. http://www.modernbill.com/
|
CWE-79
Cross-site Scripting
|
CVE-2008-5059
|
2017-09-29 10:32 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256884
|
- |
|
modernbill
|
modernbill
|
Multiple PHP remote file inclusion vulnerabilities in ModernBill 4.4 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the DIR parameter to (1) export_batch.inc.php, (2) r…
|
CWE-94
Code Injection
|
CVE-2008-5060
|
2017-09-29 10:32 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256885
|
- |
|
smolinari
|
mini_web_calendar
|
Cross-site scripting (XSS) vulnerability in php/cal_default.php in Mini Web Calendar (mwcal) 1.2 allows remote attackers to inject arbitrary web script or HTML via the URL.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5061
|
2017-09-29 10:32 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256886
|
- |
|
smolinari
|
mini_web_calendar
|
Directory traversal vulnerability in php/cal_pdf.php in Mini Web Calendar (mwcal) 1.2 allows remote attackers to read arbitrary files via directory traversal sequences in the thefile parameter.
|
CWE-22
Path Traversal
|
CVE-2008-5062
|
2017-09-29 10:32 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256887
|
- |
|
otmanager
|
otmanager
|
PHP remote file inclusion vulnerability in Admin/ADM_Pagina.php in OTManager 2.4 allows remote attackers to execute arbitrary PHP code via a URL in the Tipo parameter.
|
CWE-94
Code Injection
|
CVE-2008-5063
|
2017-09-29 10:32 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256888
|
- |
|
easy-script
|
tlguesbook
|
TlGuestBook 1.2 allows remote attackers to bypass authentication and gain administrative access by setting the tlGuestBook_login cookie to admin.
|
CWE-287
Improper Authentication
|
CVE-2008-5065
|
2017-09-29 10:32 |
2008-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256889
|
- |
|
agaresmedia
|
themesitescript
|
PHP remote file inclusion vulnerability in upload/admin/frontpage_right.php in Agares Media ThemeSiteScript 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the loadadminpage pa…
|
CWE-94
Code Injection
|
CVE-2008-5066
|
2017-09-29 10:32 |
2008-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256890
|
- |
|
pro_chat_rooms
|
pro_chat_rooms
|
SQL injection vulnerability in Pro Chat Rooms 3.0.3, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the gud parameter to (1) profiles/index.php and (…
|
CWE-89
SQL Injection
|
CVE-2008-5070
|
2017-09-29 10:32 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|