Total
14188 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2009-4938 | 2 Joomla, Warphd | 2 Joomla\!, Com Jvideo | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in the JVideo! (com_jvideo) component 0.3.11c Beta and 0.3.x for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter in a user action to index.php. | |||||
CVE-2009-4792 | 1 Karl Core | 1 Bandsite Cms | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in includes/content/member_content.php in BandSite CMS 1.1.4 allows remote attackers to execute arbitrary SQL commands via the memid parameter to members.php. | |||||
CVE-2009-4797 | 1 Jobhut.spranger | 1 Jobhut | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in browse.php in JobHut 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the pk parameter. | |||||
CVE-2009-4687 | 1 Hypersilence | 1 Silentum Guestbook | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in silentum_guestbook.php in Silentum Guestbook 2.0.2 allows remote attackers to execute arbitrary SQL commands via the messageid parameter. | |||||
CVE-2009-4883 | 1 Todd Rogers | 1 Phprecipebook | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in PHPRecipeBook 2.24 and 2.39 allows remote attackers to execute arbitrary SQL commands via the (1) base_id or (2) course_id parameter in a search action. | |||||
CVE-2009-4871 | 1 Logoshows | 1 Logoshows Bbs | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in globepersonnel_forum.asp in Logoshows BBS 2.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. | |||||
CVE-2009-4696 | 1 Radscripts | 1 Radnics | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in RadNICS Gold 5 allows remote attackers to execute arbitrary SQL commands via the fid parameter in a view_forum action. | |||||
CVE-2009-4862 | 1 Abushhab | 1 Alwasel | 2017-09-19 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Alwasel 1.5 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) show.php and (2) xml.php. | |||||
CVE-2009-5088 | 1 Ideacart | 1 Ideacart | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in secure/index.php in IdeaCart 0.02 allows remote attackers to execute arbitrary SQL commands via the cID parameter. | |||||
CVE-2009-4621 | 2 Discuz, Patching | 2 Discuz\!, Jianghu Inn | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in the JiangHu Inn plugin 1.1 and earlier for Discuz! allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action to forummission.php. | |||||
CVE-2009-5091 | 1 Vlinks | 1 Vlinks | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in page.php in Vlinks 1.0.3 and 1.1.6 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2009-4669 | 1 Beaussier | 1 Roomphplanning | 2017-09-19 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in RoomPHPlanning 1.6 allow remote attackers to execute arbitrary SQL commands via (1) the loginus parameter to Login.php or (2) the Old Password field to changepwd.php, and allow (3) remote authenticated administrators to execute arbitrary SQL commands via the id parameter to admin/userform.php. | |||||
CVE-2009-4732 | 1 Technotoad | 1 Tt Web Site Manager | 2017-09-19 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in tt/index.php in TT Web Site Manager 0.5, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the tt_name parameter. NOTE: some of these details are obtained from third party information. | |||||
CVE-2009-5090 | 1 Daman371 | 1 Bloggeruniverse | 2017-09-19 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in editcomments.php in Bloggeruniverse Beta 2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter and possibly other unspecified vectors. | |||||
CVE-2009-4619 | 2 Joomla, Lucygames | 2 Joomla\!, Com Lucygames | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Lucy Games (com_lucygames) component 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gameid parameter in a game action to index.php. NOTE: some of these details are obtained from third party information. | |||||
CVE-2009-4940 | 1 Zeuscart | 1 Zeuscart | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Zeus Cart 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the maincatid parameter in a showmaincatlanding action. | |||||
CVE-2009-4727 | 1 Junglescripts | 1 Ajax Short Url Script | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in x/login in JungleScripts Ajax Short Url Script allows remote attackers to execute arbitrary SQL commands via the username parameter. | |||||
CVE-2009-4695 | 1 Radscripts | 1 Radlance | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in RadScripts RadLance Gold 7.5 allows remote attackers to execute arbitrary SQL commands via the fid parameter in a view_forum action. | |||||
CVE-2009-4749 | 1 Phplivesupport | 1 Php Live\! | 2017-09-19 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in PHP Live! 3.2.1 and 3.2.2 allow remote attackers to execute arbitrary SQL commands via the x parameter to (1) message_box.php and (2) request.php. | |||||
CVE-2009-4958 | 1 Emophp | 1 Emo Breeder Manager | 2017-09-19 | 7.5 HIGH | N/A |
SQL injection vulnerability in video.php in EMO Breeder Manager (aka EMO Breader Manager) allows remote attackers to execute arbitrary SQL commands via the idd parameter. |