261021
|
- |
|
stanback
|
bs_counter
|
SQL injection vulnerability in file/stats.php in BS Counter 2.5.3 allows remote attackers to execute arbitrary SQL commands via the page parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3659
|
2017-09-19 10:29 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261022
|
- |
|
efrontlearning
|
efront
|
PHP remote file inclusion vulnerability in libraries/database.php in Efront 3.5.4 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the…
|
CWE-94
Code Injection
|
CVE-2009-3660
|
2017-09-19 10:29 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261023
|
- |
|
blueconstantmedia
|
com_djcatalog
|
Multiple SQL injection vulnerabilities in the DJ-Catalog (com_djcatalog) component for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a showItem action a…
|
CWE-89
SQL Injection
|
CVE-2009-3661
|
2017-09-19 10:29 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261024
|
- |
|
jasper
|
httpdx
|
Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string s…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2009-3663
|
2017-09-19 10:29 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261025
|
- |
|
adsdx
|
adsdx
|
SQL injection vulnerability in admin/index.php in AdsDX 3.05 allows remote attackers to execute arbitrary SQL commands via the Username.
|
CWE-89
SQL Injection
|
CVE-2009-3667
|
2017-09-19 10:29 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261026
|
- |
|
foobla
|
com_foobla_suggestions
|
SQL injection vulnerability in the foobla Suggestions (com_foobla_suggestions) component 1.5.11 for Joomla! allows remote attackers to execute arbitrary SQL commands via the idea_id parameter to inde…
|
CWE-89
SQL Injection
|
CVE-2009-3669
|
2017-09-19 10:29 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261027
|
- |
|
ksplayer
|
ksp_sound_player
|
Stack-based buffer overflow in KSP Sound Player 2009 R2 and R2.1 allows remote attackers to execute arbitrary code via a long string in a .m3u playlist file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3670
|
2017-09-19 10:29 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261028
|
- |
|
ebayclonescript
|
ebay_clone
|
Multiple SQL injection vulnerabilities in Ebay Clone 2009 allow remote attackers to execute arbitrary SQL commands via the (1) user_id parameter to feedback.php; and the item_id parameter to (2) view…
|
CWE-89
SQL Injection
|
CVE-2009-3712
|
2017-09-19 10:29 |
2009-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261029
|
- |
|
morcego
|
morcegocms
|
SQL injection vulnerability in fichero.php in MorcegoCMS 1.7.6 and earlier allows remote attackers to execute arbitrary SQL commands via the query string.
|
CWE-89
SQL Injection
|
CVE-2009-3713
|
2017-09-19 10:29 |
2009-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261030
|
- |
|
maniacomputer
|
mcshoutbox
|
Cross-site scripting (XSS) vulnerability in admin_login.php in MCshoutbox 1.1 allows remote attackers to inject arbitrary web script or HTML via the loginerror parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3714
|
2017-09-19 10:29 |
2009-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|