Total
14138 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2008-0137 | 1 Snetworks | 1 Php Classifieds | 2024-11-21 | N/A |
PHP remote file inclusion vulnerability in config.inc.php in SNETWORKS PHP CLASSIFIEDS 5.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_escape parameter. | ||||
CVE-2008-0133 | 1 Thomas Perez | 1 Tribisur | 2024-11-21 | N/A |
Multiple SQL injection vulnerabilities in Tribisur 2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to cat_main.php and the (2) cat parameter to forum.php in a liste action. | ||||
CVE-2008-0130 | 1 Instantsoftwares | 1 Dating Site | 2024-11-21 | N/A |
SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Username parameter, a different vulnerability than CVE-2007-6671. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | ||||
CVE-2008-0129 | 1 Siteatschool | 1 Siteatschool | 2024-11-21 | N/A |
SQL injection vulnerability in starnet/addons/slideshow_full.php in Site@School 2.3.10 and earlier allows remote attackers to execute arbitrary SQL commands via the album_name parameter. | ||||
CVE-2008-0099 | 1 Myphp Forum | 1 Myphp Forum | 2024-11-21 | N/A |
Multiple SQL injection vulnerabilities in MyPHP Forum 3.0 and earlier allow remote attackers to execute arbitrary SQL commands via the searchtext parameter to search.php, and unspecified other vectors. | ||||
CVE-2008-0089 | 1 Clip-share | 1 Clipshare | 2024-11-21 | N/A |
SQL injection vulnerability in uprofile.php in ClipShare allows remote attackers to execute arbitrary SQL commands via the UID parameter. | ||||
CVE-2008-0026 | 1 Cisco | 2 Unified Callmanager, Unified Communications Manager | 2024-11-21 | N/A |
SQL injection vulnerability in Cisco Unified CallManager/Communications Manager (CUCM) 5.0/5.1 before 5.1(3a) and 6.0/6.1 before 6.1(1a) allows remote authenticated users to execute arbitrary SQL commands via the key parameter to the (1) admin and (2) user interface pages. | ||||
CVE-2007-6727 | 1 Max Kervin | 1 Kervinet Forum | 2024-11-21 | N/A |
SQL injection vulnerability in topic.php in KerviNet Forum 1.1 allows remote attackers to execute arbitrary SQL commands via the forum parameter. | ||||
CVE-2007-6719 | 1 Inspector It | 1 Wiz-ad | 2024-11-21 | N/A |
SQL injection vulnerability in Wiz-Ad 1.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | ||||
CVE-2007-6671 | 1 Instantsoftwares | 1 Dating Site | 2024-11-21 | N/A |
SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Password parameter, a different product than CVE-2006-6021. NOTE: some of these details are obtained from third party information. | ||||
CVE-2007-6670 | 1 Phpcredo | 1 Phcdownload | 2024-11-21 | N/A |
SQL injection vulnerability in search.php in PHCDownload 1.1.0 allows remote attackers to execute arbitrary SQL commands via the string parameter. | ||||
CVE-2007-6667 | 1 Myphp | 1 Myphp Forum | 2024-11-21 | N/A |
SQL injection vulnerability in faq.php in MyPHP Forum 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the member.php vector is already covered by CVE-2005-0413. | ||||
CVE-2007-6666 | 1 Zenphoto | 1 Zenphoto | 2024-11-21 | N/A |
SQL injection vulnerability in rss.php in Zenphoto 1.1 through 1.1.3 allows remote attackers to execute arbitrary SQL commands via the albumnr parameter. | ||||
CVE-2007-6665 | 1 Netchemia | 1 Oneschool | 2024-11-21 | N/A |
SQL injection vulnerability in admin/login.asp in Netchemia oneSCHOOL allows remote attackers to execute arbitrary SQL commands via the txtLoginID parameter. | ||||
CVE-2007-6664 | 1 Webportal | 1 Webportal Cms | 2024-11-21 | N/A |
SQL injection vulnerability in index.php in WebPortal CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter. | ||||
CVE-2007-6663 | 2 Joomla, Pragmatic Utopia | 2 Joomla, Pu Arcade | 2024-11-21 | N/A |
SQL injection vulnerability in (1) Puarcade.php and (2) PUarcade.html.php in Pragmatic Utopia PU Arcade (com_puarcade) 2.0.3, 2.1.2, and 2.1.3 Beta component for Joomla! allows remote attackers to execute arbitrary SQL commands via the fid parameter to index.php. | ||||
CVE-2007-6658 | 1 Customcms | 1 Ccms | 2024-11-21 | N/A |
SQL injection vulnerability in admin.php/vars.php in CustomCMS (CCMS) 3.1 Demo allows remote attackers to execute arbitrary SQL commands via the p parameter in the Console page. | ||||
CVE-2007-6656 | 1 Cmsmadesimple | 1 Cms Made Simple | 2024-11-21 | N/A |
SQL injection vulnerability in content_css.php in the TinyMCE module for CMS Made Simple 1.2.2 and earlier allows remote attackers to execute arbitrary SQL commands via the templateid parameter. | ||||
CVE-2007-6647 | 1 W-agora | 1 W-agora | 2024-11-21 | N/A |
SQL injection vulnerability in index.php in w-Agora 4.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. | ||||
CVE-2007-6639 | 1 Iptbb Team | 1 Iptbb | 2024-11-21 | N/A |
SQL injection vulnerability in index.php in IPTBB 0.5.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewdir action. |