Total
14188 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-2012 | 1 Postnuke Software Foundation | 1 Postschedule | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the PostSchedule 1.0 module for PostNuke allows remote attackers to execute arbitrary SQL commands via the eid parameter in an event action. | |||||
CVE-2008-1272 | 1 Bmscripts | 1 Bm Classifieds | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in BM Classifieds 20080309 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showad.php and the (2) ad parameter to pfriendly.php. | |||||
CVE-2008-1406 | 1 Exv2 | 1 Exv2 | 2017-09-29 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in annonces-p-f.php in the MyAnnonces 1.8 module for eXV2 allows remote attackers to execute arbitrary SQL commands via the lid parameter in an ImprAnn action. | |||||
CVE-2008-0682 | 1 Wordpress | 1 Wordspew | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in wordspew-rss.php in the Wordspew plugin before 3.72 for Wordpress allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1915 | 1 Devworx | 1 Blogworx | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in view.asp in DevWorx BlogWorx 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1177 | 1 Affiliate Market | 1 Affiliate Market | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in shop/detail.php in Affiliate Market (affmarket) 0.1 BETA allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-0922 | 1 Php-nuke | 1 Manuales | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Manuales 0.1 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter in a viewdownload action to modules.php. | |||||
CVE-2008-0421 | 1 Invision Power Services | 1 Invision Gallery | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in Invision Gallery 2.0.7 and earlier allows remote attackers to execute arbitrary SQL commands via the album parameter in a rate command. | |||||
CVE-2008-0607 | 3 Joomla, Mambo, Sigsiu.net | 3 Com Sobi2, Com Sobi2, Sobi2 | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the Sigsiu Online Business Index 2 (SOBI2, com_sobi2) 2.5.3 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-0430 | 1 360 Web Manager | 1 360 Web Manager | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in form.php in 360 Web Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the IDFM parameter. | |||||
CVE-2008-1639 | 1 Neat Web | 1 Neat-web | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Neat weblog 0.2 allows remote attackers to execute arbitrary SQL commands via the articleId parameter in a show action, probably related to the showArticle function in lib/lib_article.include.php. | |||||
CVE-2008-0821 | 1 Osi Codes Inc. | 1 Phplive | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in admin/traffic/knowledge_searchm.php in OSI Codes Inc. PHP Live! 3.2.2 allows remote attackers to execute arbitrary SQL commands via the questid parameter in an expand_question action. | |||||
CVE-2008-0468 | 1 Flinx | 1 Flinx | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in category.php in Flinx 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1913 | 1 Lasernet Cms | 1 Lasernet Cms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Lasernet CMS 1.5 and 1.11, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the new parameter in a new action. | |||||
CVE-2008-1316 | 1 Qt-cute | 1 Quicktalk Forum | 2017-09-29 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in qtf_ind_search_ov.php in QT-cute QuickTalk Forum 1.6 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-0447 | 1 Foojan | 1 Php Weblog | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Foojan WMS PHP Weblog 1.0 allows remote attackers to execute arbitrary SQL commands via the story parameter. | |||||
CVE-2007-6622 | 1 Zeuscms | 1 Zeuscms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in security.php in ZeusCMS 0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Referer HTTP header. | |||||
CVE-2008-0906 | 1 Php-nuke | 1 Php-nuke Module Docum | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Docum module in PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the artid parameter in a viewarticle operation. | |||||
CVE-2008-1404 | 1 Exv2 | 1 Exv2 | 2017-09-29 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in index.php in the Viso (Industry Book) 2.04 and 2.03 module for eXV2 allows remote attackers to execute arbitrary SQL commands via the kid parameter. | |||||
CVE-2008-0327 | 1 Fascript | 1 Famp3 | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in show.php in FaScript FaMp3 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. |