Total
14188 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-5970 | 1 I-netsolution | 1 Orkut Clone | 2017-08-08 | 6.5 MEDIUM | N/A |
SQL injection vulnerability in profile_social.php in i-Net Solution Orkut Clone allows remote authenticated users to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-5165 | 1 Eticket | 1 Eticket | 2017-08-08 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in eTicket 1.5.7 allow remote attackers to execute arbitrary SQL commands via the pri parameter to (1) index.php, (2) open.php, (3) open_raw.php, and (4) newticket.php. | |||||
CVE-2008-6026 | 1 Bluecube | 1 Bluecube Cms | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in tienda.php in BlueCUBE CMS allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-5977 | 1 Preprojects | 1 Php Jobwebsite Pro | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in siteadmin/forgot.php in PHP JOBWEBSITE PRO allows remote attackers to execute arbitrary SQL commands via the adname parameter in a Submit action. | |||||
CVE-2008-6016 | 1 Editeurscripts | 1 Esfaq | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2008-3952. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2009-0332 | 1 Avbooklibrary | 1 Avbooklibrary | 2017-08-08 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in AV Book Library before 1.1 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) admin/edit.php, (2) admin/add.php, (3) lib/book_search.php, and possibly other components. | |||||
CVE-2008-5057 | 1 Aspindir | 1 Dizi Portali | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in film.asp in Yigit Aybuga Dizi Portali allows remote attackers to execute arbitrary SQL commands via the film parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-3672 | 1 Pozscripts | 1 Classified Ads | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in showcategory.php in PozScripts Classified Ads allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2008-3673. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-4768 | 1 Tlm Cms | 1 Tlm Cms | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in TLM CMS 3.1 allows remote attackers to execute arbitrary SQL commands via the nom parameter to a-b-membres.php. NOTE: the goodies.php vector is already covered by CVE-2007-4808. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-4459 | 1 Extrovert Software | 1 Thyme | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in pick_users.php in the groups module in eXtrovert Thyme 1.3 allows remote attackers to execute arbitrary SQL commands via the uname_search parameter. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-3682 | 1 Ypninc | 1 Php Realty | 2017-08-08 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in dpage.php in YPN PHP Realty allows remote attackers to execute arbitrary SQL commands via the docID parameter. | |||||
CVE-2008-4433 | 2 Rmsoft, Xoops | 2 Minishop Module, Xoops | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in search.php in the RMSOFT MiniShop module 1.0 for Xoops might allow remote attackers to execute arbitrary SQL commands via the itemsxpag parameter. | |||||
CVE-2008-4746 | 1 Uniwin | 1 Ecart Professional | 2017-08-08 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Uniwin eCart Professional 2.0.17 allow remote attackers to execute arbitrary SQL commands via unspecified vectors to (1) search.asp and (2) cartUtil.asp. | |||||
CVE-2008-4647 | 1 Sweetcms | 1 Sweetcms | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in sweetCMS 1.5.2 allows remote attackers to execute arbitrary SQL commands via the page parameter. | |||||
CVE-2008-4531 | 1 Drupal | 1 Brilliant Gallery | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in Brilliant Gallery 5.x before 5.x-4.2, a module for Drupal, allows remote attackers to execute arbitrary SQL commands via unspecified vectors, related to queries. NOTE: this might be the same issue as CVE-2008-4338. | |||||
CVE-2008-4348 | 1 Outshine | 1 Phportfolio | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in photo.php in PHPortfolio, possibly 1.3, allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-4143 | 1 Razorecommerce | 1 Shopping Cart | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in category_search.php in RazorCommerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-3722 | 1 Fipsasp | 1 Fipscms | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in forum/neu.asp in fipsCMS 2.1 allows remote attackers to execute arbitrary SQL commands via the kat parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-4766 | 1 O2php | 1 Oxygen Bulletin Board | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in member.php in Oxygen Bulletin Board 1.1.3 allows remote attackers to execute arbitrary SQL commands via the member parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-4744 | 1 Dxproscripts | 1 Dxshopcart | 2017-08-08 | 7.5 HIGH | N/A |
SQL injection vulnerability in product_detail.php in DXShopCart 4.30mc allows remote attackers to execute arbitrary SQL commands via the pid parameter. |