Total
14188 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-4665 | 1 Datingpro | 1 Matchmaking | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in PG Matchmaking allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) news_read.php and (2) gifts_show.php. | |||||
CVE-2008-5633 | 1 Activewebsoftwares | 1 Activevotes | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in register.asp in ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, possibly related to start.asp. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-6011 | 1 Sg Real Estate Portal | 1 Sg Real Estate Portal | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in SG Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the page_id parameter. | |||||
CVE-2008-5491 | 1 Slimcms | 1 Slimcms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in edit.php in SlimCMS 1.0.0 and earlier allows remote attackers to execute arbitrary SQL commands via the pageID parameter. | |||||
CVE-2008-4524 | 1 Adaptcms | 1 Adaptcms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in the "Check User" feature (includes/check_user.php) in AdaptCMS Lite and AdaptCMS Pro 1.3 allows remote attackers to execute arbitrary SQL commands via the user_name parameter. | |||||
CVE-2008-4604 | 1 Cafeengine | 1 Easycafeengine | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Easy CafeEngine 1.1 allows remote attackers to execute arbitrary SQL commands via the itemid parameter. | |||||
CVE-2008-5174 | 1 Easysitenetwork | 1 Jokes Complete Website | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in joke.php in Jokes Complete Website 2.1.3 allows remote attackers to execute arbitrary SQL commands via the jokeid parameter. | |||||
CVE-2008-6078 | 1 Limbo Cms | 2 Com Privmsg, Limbo Cms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in open.php in the Private Messaging (com_privmsg) component for Limbo CMS allows remote attackers to execute arbitrary SQL commands via the id parameter in a pms action to index.php. | |||||
CVE-2008-4709 | 1 Pilot Group | 1 Etraining | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in news_read.php in Pilot Group (PG) eTraining allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-5287 | 1 Scripts4you | 1 Faq Manager | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in catagorie.php in Werner Hilversum FAQ Manager 1.2 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. | |||||
CVE-2008-5074 | 1 Php-fusion | 2 Freshlinks Module, Php-fusion | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the Freshlinks 1.0 RC1 module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the linkid parameter. | |||||
CVE-2008-4469 | 1 Vastal I-tech | 1 Freelance Zone | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in view_cresume.php in Vastal I-Tech Freelance Zone allows remote attackers to execute arbitrary SQL commands via the coder_id parameter. | |||||
CVE-2008-5169 | 1 Easysitenetwork | 1 Drinks Complete Website | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in drinks/drink.php in Drinks Complete Website 2.1.0 allows remote attackers to execute arbitrary SQL commands via the drinkid parameter. | |||||
CVE-2008-4785 | 1 E107 | 2 Alternate Profiles Plugin, E107 | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in newuser.php in the alternate_profiles plugin, possibly 0.2, for e107 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-5926 | 1 Asp-dev | 1 Internal E-mail System | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in login.asp in ASP-DEv Internal E-Mail System allow remote attackers to execute arbitrary SQL commands via the (1) login parameter (aka user field) or the (2) password parameter (aka pass field). NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-4462 | 1 Vastal I-tech | 1 Visa Zone | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in view_news.php in Vastal I-Tech Visa Zone allows remote attackers to execute arbitrary SQL commands via the news_id parameter. | |||||
CVE-2008-4461 | 1 Vastal I-tech | 1 Dating Zone | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in advanced_search_results.php in Vastal I-Tech Dating Zone, possibly 0.9.9, allows remote attackers to execute arbitrary SQL commands via the fage parameter. | |||||
CVE-2008-6031 | 1 Wsn Links | 1 Wsn Links | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in vote.php in WSN Links 2.22 and 2.23 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: it was later reported that 2.34 is also vulnerable. | |||||
CVE-2008-4375 | 1 Availscript | 1 Availscript Classmate Script | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in viewprofile.php in Availscript Classmate Script allows remote attackers to execute arbitrary SQL commands via the p parameter. | |||||
CVE-2008-4185 | 1 Webcms | 1 Webcms Portal Edition | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in webCMS Portal Edition allows remote attackers to execute arbitrary SQL commands via the id parameter in a documentos action, a different vector than CVE-2008-3213. |