257711
|
- |
|
phplinkat
|
phplinkat
|
phpLinkat 0.1 allows remote attackers to bypass authentication and access unspecified pages under admin/ by sending a login=right cookie.
|
CWE-287
Improper Authentication
|
CVE-2008-3407
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257712
|
- |
|
coolplayer
|
coolplayer
|
Stack-based buffer overflow in CoolPlayer 2.18, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a crafted m3u file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3408
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257713
|
- |
|
ecshop
|
epshop
|
SQL injection vulnerability in Comsenz EPShop (aka ECShop) before 3.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter in a (1) pro_show or (2) disppro action to the de…
|
CWE-89
SQL Injection
|
CVE-2008-3412
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257714
|
- |
|
greatclone
|
auction_platinum
|
SQL injection vulnerability in category.php in Greatclone GC Auction Platinum allows remote attackers to execute arbitrary SQL commands via the cate_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3413
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257715
|
- |
|
greatclone
|
auction_platinum
|
Additional source found during analysis:
http://www.securityfocus.com/bid/30389
|
CWE-89
SQL Injection
|
CVE-2008-3413
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257716
|
- |
|
siteadmin
|
cms
|
SQL injection vulnerability in line2.php in SiteAdmin allows remote attackers to execute arbitrary SQL commands via the art parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3414
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257717
|
- |
|
siteadmin
|
cms
|
Additional source found during analysis:
http://www.securityfocus.com/bid/30391
|
CWE-89
SQL Injection
|
CVE-2008-3414
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257718
|
- |
|
cmscout
|
cmscout
|
Directory traversal vulnerability in common.php in CMScout 2.05, when .htaccess is not supported, allows remote attackers to include and execute arbitrary local files via directory traversal sequence…
|
CWE-22
Path Traversal
|
CVE-2008-3415
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257719
|
- |
|
icebb
|
icebb
|
SQL injection vulnerability in modules/members.php in IceBB before 1.0-rc9.3 allows remote attackers to execute arbitrary SQL commands via the username parameter in a members action to index.php, rel…
|
CWE-89
SQL Injection
|
CVE-2008-3416
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257720
|
- |
|
fipsasp
|
fipscms_light
|
SQL injection vulnerability in home/index.asp in fipsCMS light 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the r parameter, a different vector than CVE-2006-6115 and…
|
CWE-89
SQL Injection
|
CVE-2008-3417
|
2017-09-29 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|