Total
14188 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-0557 | 1 Mamboserver | 1 Catalogshop | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the CatalogShop (com_catalogshop) 1.0b1 componenent for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action. | |||||
CVE-2008-0934 | 2 Nukec, Php-nuke | 2 Nukec, Nukec Module | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in modules.php in the NukeC 2.1 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id_catg parameter in a ViewCatg action. | |||||
CVE-2008-1559 | 2 Bernard Gilly, Joomla | 2 Com Alphacontent, Joomla\! | 2017-09-29 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in the Bernard Gilly AlphaContent (com_alphacontent) 2.5.8 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to index.php. | |||||
CVE-2008-0429 | 1 Alstrasoft | 1 Forum Pay Per Post Exchange | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange 2.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter in a forum_catview action. | |||||
CVE-2008-0719 | 1 Oscommerce | 2 Customer Testimonials, Oscommerce | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in customer_testimonials.php in the Customer Testimonials 3 and 3.1 Addon for osCommerce Online Merchant 2.2 allows remote attackers to execute arbitrary SQL commands via the testimonial_id parameter. | |||||
CVE-2008-0880 | 1 Phpnuke | 1 Easycontent Module | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in modules.php in the EasyContent module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the page_id parameter. | |||||
CVE-2008-1838 | 1 Bosdev | 1 Bosclassifieds Ads Systems | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in BosClassifieds Classified Ads System 3.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php. | |||||
CVE-2007-6576 | 1 Adultscript | 1 Adultscript | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Adult Script 1.6.5 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) videolink_count.php or (2) links.php. | |||||
CVE-2008-0800 | 1 Joomla | 1 Com Mcquiz | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the McQuiz (com_mcquiz) 0.9 Final component for Joomla! allows remote attackers to execute arbitrary SQL commands via the tid parameter in a user_tst_shw action. | |||||
CVE-2008-1539 | 1 Futurenuke | 1 Php Nuke Platinum | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in includes/dynamic_titles.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary SQL commands via the p parameter to modules.php for the Forums module. | |||||
CVE-2008-0279 | 1 Xforum | 1 Xforum | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in liretopic.php in Xforum 1.4 and possibly others allows remote attackers to execute arbitrary SQL commands via the topic parameter. NOTE: the categorie parameter might also be affected. | |||||
CVE-2007-4258 | 1 Prozilla | 1 Prozilla Pub Site Directory | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in directory.php in Prozilla Pub Site Directory allows remote attackers to execute arbitrary SQL commands via the cat parameter. | |||||
CVE-2007-5122 | 1 Softbizscripts | 1 Classifieds Plus Script | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in store_info.php in SoftBiz Classifieds PLUS allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2007-4845 | 1 Rwscripts.com | 1 Rw Download Lite | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in UPLOAD/index.php in RW::Download 2.0.3 lite allow remote attackers to execute arbitrary SQL commands via the (1) dlid or (2) cid parameter. | |||||
CVE-2007-4956 | 1 Kwsphp | 1 Kwsphp | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in KwsPHP 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the pseudo parameter to login.php, (2) the id parameter to index.php in a carnet editer action in the Member_Space (espace_membre) module, or (3) the typenav parameter to index.php in a browser aff action in the stats module. | |||||
CVE-2007-4952 | 1 Omnistar Interactive | 1 Omnistar Article Manager | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in article.php in OmniStar Article Manager allows remote attackers to execute arbitrary SQL commands via the page_id parameter in a favorite op action, a different vector than CVE-2006-5917. | |||||
CVE-2007-5016 | 1 Insane Visions | 1 Onecms | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in userreviews.php in OneCMS 2.4 allows remote attackers to execute arbitrary SQL commands via the abc parameter. | |||||
CVE-2007-6557 | 1 Megacheatz | 1 Megacheatz | 2017-09-29 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in MeGaCheatZ 1.1 allow remote attackers to execute arbitrary SQL commands via the ItemID parameter to (1) comments.php, (2) view.php, (3) siteadmin/ViewItem.php, and unspecified other vectors. | |||||
CVE-2007-6080 | 1 Bcoos | 1 Bcoos | 2017-09-29 | 7.5 HIGH | N/A |
SQL injection vulnerability in modules/banners/click.php in the banners module for bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via the bid parameter. NOTE: it was later reported that 1.0.13 is also affected. | |||||
CVE-2007-5408 | 1 Cplinks | 1 Cpdynalinks | 2017-09-29 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in category.php in cpDynaLinks 1.02 allows remote attackers to execute arbitrary SQL commands via the category parameter. |