Total
14188 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-4088 | 1 Myphpnuke | 1 Myphpnuke | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the sid parameter. | |||||
CVE-2008-3193 | 1 Sclek | 1 Jsite | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in jSite 1.0 OE allows remote attackers to execute arbitrary SQL commands via the page parameter to the default URI. | |||||
CVE-2008-3213 | 1 Webcms | 1 Webcms Portal Edition | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in secciones/tablon/tablon.php in WebCMS Portal Edition allows remote attackers to execute arbitrary SQL commands via the id parameter to portal/index.php in a tablon action. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-3378 | 1 Fizzmedia Negativekarma | 1 Fizzmedia | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in comment.php in Fizzmedia 1.51.2 allows remote attackers to execute arbitrary SQL commands via the mid parameter. | |||||
CVE-2008-2844 | 1 Carscripts | 1 Carscripts Classifieds | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Carscripts Classifieds allows remote attackers to execute arbitrary SQL commands via the cat parameter. | |||||
CVE-2008-2560 | 1 Fourtwosevenbb | 1 427bb | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in showpost.php in 427BB 2.3.1 allows remote attackers to execute arbitrary SQL commands via the post parameter. | |||||
CVE-2008-2555 | 1 Easyway | 1 Cms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in EasyWay CMS allows remote attackers to execute arbitrary SQL commands via the mid parameter. | |||||
CVE-2008-3780 | 1 Review-script | 1 Five Star Review Script | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in recommend.php in Five Star Review Script allows remote attackers to execute arbitrary SQL commands via the item_id parameter. | |||||
CVE-2008-4043 | 1 Aj Square | 1 Aj Hyip | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in AJ Square AJ HYIP Acme allow remote attackers to execute arbitrary SQL commands via the artid parameter to (1) acme/article/comment.php and (2) prime/article/comment.php. | |||||
CVE-2008-3240 | 1 Alstrasoft | 1 Affiliate Network Pro | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in AlstraSoft Affiliate Network Pro allows remote attackers to execute arbitrary SQL commands via the pgm parameter in a directory action. | |||||
CVE-2008-2846 | 1 Boatscripts | 1 Boatscripts Classifieds | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in BoatScripts Classifieds allows remote attackers to execute arbitrary SQL commands via the type parameter. | |||||
CVE-2008-2817 | 1 Nitropowered | 1 Nitro Web Gallery | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in albums.php in NiTrO Web Gallery 1.4.3 and earlier allows remote attackers to execute arbitrary SQL commands via the CatId parameter in a show action. | |||||
CVE-2008-1954 | 1 Webcalendar | 1 Web Calendar Pro | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in one_day.php in Web Calendar Pro 4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user_id parameter. | |||||
CVE-2008-0282 | 1 Domphp | 1 Domphp | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in welcome/inscription.php in DomPHP 0.81 and earlier allows remote attackers to execute arbitrary SQL commands via the mail parameter. | |||||
CVE-2007-6579 | 1 Ip Reg | 1 Ip Reg | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Ip Reg 0.3 allow remote attackers to execute arbitrary SQL commands via the vlan_id parameter to (1) vlanview.php, (2) vlanedit.php, and (3) vlandel.php; the (4) assetclassgroup_id parameter to assetclassgroupview.php; the (5) subnet_id parameter to nodelist.php; and unspecified other vectors. NOTE: it was later reported that the vlanview.php and vlandel.php vectors are also in 0.4. | |||||
CVE-2008-0833 | 1 Joomla | 1 Com Galeria | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the com_galeria component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action. | |||||
CVE-2008-1398 | 1 Auracms | 1 Auracms | 2017-09-29 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in online.php in AuraCMS 2.0 through 2.2.1 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For field (HTTP_X_FORWARDED_FOR environment variable) in an HTTP header. | |||||
CVE-2008-0695 | 1 Bookmarkx | 1 Script | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in BookmarkX script 2007 allows remote attackers to execute arbitrary SQL commands via the topicid parameter in a showtopic action. | |||||
CVE-2008-1608 | 1 Clever Copy | 1 Clever Copy | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in postview.php in Clever Copy 3.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter, a different vector than CVE-2008-0363 and CVE-2006-0583. | |||||
CVE-2008-1623 | 1 Lotus Web Studios Inc | 1 Smoothflash | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in admin_view_image.php in Smoothflash allows remote attackers to execute arbitrary SQL commands via the cid parameter. |