Total
14188 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-2796 | 1 Freecms.us | 1 Freecms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in FreeCMS 0.2 allows remote attackers to execute arbitrary SQL commands via the page parameter. | |||||
CVE-2008-3767 | 1 Smartisoft | 1 Phpbazar | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in classified.php in phpBazar 2.0.2 allows remote attackers to execute arbitrary SQL commands via the adid parameter. | |||||
CVE-2008-2688 | 1 Pilotcart | 1 Pilot Cart | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in pilot.asp in ASPilot Pilot Cart 7.3 allows remote attackers to execute arbitrary SQL commands via the article parameter in a kb action. | |||||
CVE-2008-3591 | 1 21degrees | 1 Symphony | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in lib/class.admin.php in Twentyone Degrees Symphony 1.7.01 and earlier allows remote attackers to execute arbitrary SQL commands via the sym_auth cookie in a /publish/filemanager/ request to index.php. | |||||
CVE-2008-2194 | 1 Deluxebb | 1 Deluxebb | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in forums.php in DeluxeBB 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the sort parameter. | |||||
CVE-2008-4039 | 1 Spice Classifieds | 1 Spice Classifieds | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Spice Classifieds allows remote attackers to execute arbitrary SQL commands via the cat_path parameter. | |||||
CVE-2008-3711 | 1 Phparcadescript | 1 Phparcadescript | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in PHPArcadeScript (PHP Arcade Script) 4.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter in a browse action. | |||||
CVE-2008-2477 | 1 Mx-system | 1 Mxbb Portal | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in MxBB (aka MX-System) Portal 2.7.3 allows remote attackers to execute arbitrary SQL commands via the page parameter. | |||||
CVE-2008-3420 | 1 Willo | 1 Mobius Web Publishing Software | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Mobius for Mimsy XG 1 1.4.4.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to browse.php or (2) the s parameter in an exhibitions action to detail.php. | |||||
CVE-2008-3601 | 1 Quicksilver Forums | 1 Quicksilver Forums | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Quicksilver Forums 1.4.1 allows remote attackers to execute arbitrary SQL commands via the forums array parameter in a search action. | |||||
CVE-2008-3554 | 1 Comsenz | 1 Discuz | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Discuz! 6.0.1 allows remote attackers to execute arbitrary SQL commands via the searchid parameter in a search action. | |||||
CVE-2008-2529 | 1 Advanced Links Management | 1 Advanced Links Management | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in read.php in Advanced Links Management (ALM) 1.5.2 allows remote attackers to execute arbitrary SQL commands via the catId parameter. | |||||
CVE-2008-3251 | 1 Tpl Design | 1 Tplsoccersite | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in tplSoccerSite 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the opp parameter to tampereunited/opponent.php; or the id parameter to (2) index.php, (3) player.php, (4) matchdetails.php, or (5) additionalpage.php in tampereunited/. | |||||
CVE-2008-2395 | 1 Alkalinephp | 1 Alkalinephp | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in thread.php in AlkalinePHP 0.80.00 beta and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-3713 | 1 Phpbasket | 1 Phpbasket | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in product.php in PHPBasket allows remote attackers to execute arbitrary SQL commands via the pro_id parameter. | |||||
CVE-2008-3594 | 1 Magicscripts | 2 E-store Kit-1, E-store Kit-2 | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in viewdetails.php in MagicScripts E-Store Kit-1, E-Store Kit-2, E-Store Kit-1 Pro PayPal Edition, and E-Store Kit-2 PayPal Edition allows remote attackers to execute arbitrary SQL commands via the pid parameter. | |||||
CVE-2008-2835 | 1 Igsuite | 1 Igsuite | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in cgi-bin/igsuite in IGSuite 3.2.4 allows remote attackers to execute arbitrary SQL commands via the formid parameter. | |||||
CVE-2008-2823 | 1 Phpeasynews | 1 Phpeasyblog | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in newsarchive.php in PHPeasyblog (formerly phpeasynews) 1.13 RC2 and earlier allows remote attackers to execute arbitrary SQL commands via the post parameter. | |||||
CVE-2008-3489 | 1 Phpx | 1 Phpx | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in checkCookie function in includes/functions.inc.php in PHPX 3.5.16 allows remote attackers to execute arbitrary SQL commands via a PXL cookie. | |||||
CVE-2008-3035 | 1 Xchangeboard | 1 Xchangeboard | 2017-09-29 | 6.5 MEDIUM | N/A |
SQL injection vulnerability in newThread.php in XchangeBoard 1.70 Final and earlier allows remote authenticated users to execute arbitrary SQL commands via the boardID parameter. |