Vulnerabilities (CVE)

Filtered by CWE-89
Total 14188 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3414 1 Siteadmin 1 Cms 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in line2.php in SiteAdmin allows remote attackers to execute arbitrary SQL commands via the art parameter.
CVE-2008-3603 1 Vacation Rentals 1 Vacation Rental Script 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in index.php in Vacation Rental Script 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a sections action.
CVE-2008-3310 1 Preproject 1 Pre Survey Poll 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in default.asp in Pre Survey Poll allows remote attackers to execute arbitrary SQL commands via the catid parameter.
CVE-2008-2915 1 Preprojects 1 Pre Job Board 2017-09-29 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in jobseekers/JobSearch.php (aka the search module) in Pre Job Board allow remote attackers to execute arbitrary SQL commands via the (1) position or (2) kw parameter.
CVE-2008-4054 1 Kolifa 1 Download Script 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in indir.php in Kolifa.net Download Script 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2008-2834 1 Sidb 1 Scientific Image Database 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in projects.php in Scientific Image DataBase 0.41 allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2008-3953 1 Vastal 1 Shaadi Zone 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in keyword_search_action.php in Vastal I-Tech Shaadi Zone 1.0.9 allows remote attackers to execute arbitrary SQL commands via the tage parameter.
CVE-2008-3720 1 Deeemm 1 Dmcms 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in index.php in DeeEmm CMS (DMCMS) 0.7.4 allows remote attackers to execute arbitrary SQL commands via the page parameter. NOTE: the id vector is already covered by CVE-2007-5679.
CVE-2008-3366 1 Pligg 1 Pligg Cms 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in story.php in Pligg CMS Beta 9.9.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: this might overlap CVE-2008-1774.
CVE-2008-2869 1 E-topbiz 1 Link Ads 1 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in out.php in E-topbiz Link ADS 1 allows remote attackers to execute arbitrary SQL commands via the linkid parameter.
CVE-2008-2175 1 Gamma Scripts 1 Blogme Php 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in comments.php in Gamma Scripts BlogMe PHP 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2008-2921 1 Eztechhelp Company 1 Ezcms 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in index.php in EZTechhelp EZCMS 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter.
CVE-2008-3951 1 Vastal 1 Agent Zone 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in view_ann.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attackers to execute arbitrary SQL commands via the ann_id parameter.
CVE-2008-2125 1 Musicbox 1 Musicbox 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in viewalbums.php in Musicbox 2.3.6 and 2.3.7 allows remote attackers to execute arbitrary SQL commands via the artistId parameter.
CVE-2008-3952 1 Editeurscripts Esfaq 1 2.0 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via the idcat parameter.
CVE-2008-3413 1 Greatclone 1 Auction Platinum 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in category.php in Greatclone GC Auction Platinum allows remote attackers to execute arbitrary SQL commands via the cate_id parameter.
CVE-2008-2792 1 Erocms 1 Erocms 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in index.php in eroCMS 1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the site parameter.
CVE-2008-3025 1 Plx Web Studio 1 Plx Ad Trader 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in ad.php in plx Ad Trader 3.2 allows remote attackers to execute arbitrary SQL commands via the adid parameter in a redir action.
CVE-2008-3706 1 Zeeways 1 Zeejobsite 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in bannerclick.php in ZEEJOBSITE 2.0 allows remote attackers to execute arbitrary SQL commands via the adid parameter.
CVE-2008-3406 1 Phplinkat 1 Phplinkat 2017-09-29 7.5 HIGH N/A
SQL injection vulnerability in showcat.php in phpLinkat 0.1 allows remote attackers to execute arbitrary SQL commands via the catid parameter.