Total
9311 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-5653 | 1 Myiosoft.com | 1 Ajaxportal | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands via the rsargs parameter, as reachable through the username parameter. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-5654 | 1 Myiosoft | 1 Easycalendar | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyCalendar 4.0 allows remote attackers to execute arbitrary SQL commands via the rsargs parameter, as reachable through the username parameter, a different vector than CVE-2008-1344. NOTE: some of these details are obtained from third party information. | |||||
CVE-2007-6134 | 1 Phpkit | 1 Phpkit | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in pkinc/public/article.php in PHPKIT 1.6.4pl1 allows remote attackers to execute arbitrary SQL commands via the contentid parameter in an article action to include.php, a different vector than CVE-2006-1773. | |||||
CVE-2007-6137 | 1 P3mbo | 1 Content Injector | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in news.php in Content Injector 1.52 allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-5838 | 1 Ephpscripts | 1 E-shop Shopping Cart | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in search_results.php in E-Php Scripts E-Shop (aka E-Php Shopping Cart) Shopping Cart Script allows remote attackers to execute arbitrary SQL commands via the cid parameter. | |||||
CVE-2007-6172 | 1 Wire Plastic Design | 1 Wpquiz | 2017-10-18 | 10.0 HIGH | N/A |
Multiple SQL injection vulnerabilities in wpQuiz 2.7 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) viewimage.php and (2) comments.php. | |||||
CVE-2007-0582 | 1 Chernobile | 1 Chernobile | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in default.asp in ChernobiLe 1.0 allows remote attackers to execute arbitrary SQL commands via the User (username) field. | |||||
CVE-2008-6148 | 2 Joomla, Raven-worx | 2 Joomla, Liveticker | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Live Ticker (com_liveticker) module 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the tid parameter in a viewticker action to index.php. | |||||
CVE-2008-6150 | 1 Sepcity | 1 Classified Ads | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in classdis.asp in SepCity Classified Ads allows remote attackers to execute arbitrary SQL commands via the ID parameter. | |||||
CVE-2008-6187 | 1 Gforge | 1 Gforge | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in frs/shownotes.php in Gforge 4.5.19 and earlier allows remote attackers to execute arbitrary SQL commands via the release_id parameter. | |||||
CVE-2008-6188 | 1 Gforge | 1 Gforge | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in people/editprofile.php in Gforge 4.6 rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the skill_edit[] parameter. | |||||
CVE-2008-6246 | 1 Scripts-for-sites | 1 Ez Webring | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in category.php in Scripts For Sites (SFS) EZ Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter. | |||||
CVE-2008-6247 | 1 Scripts-for-sites | 1 Ez Top Sites | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in topsite.php in Scripts For Sites (SFS) EZ Top Sites allows remote attackers to execute arbitrary SQL commands via the ts parameter. | |||||
CVE-2008-2568 | 1 Joomla | 2 Com Simpleshop, Joomla | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a browse action to index.php. | |||||
CVE-2008-2697 | 2 Joomla, Rapid-source | 2 Com Rapidrecipe, Rapid Recipe | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php. | |||||
CVE-2008-0139 | 1 Loudblog | 1 Loudblog | 2017-10-18 | 6.8 MEDIUM | N/A |
Eval injection vulnerability in loudblog/inc/parse_old.php in Loudblog 0.8.0 and earlier allows remote attackers to execute arbitrary PHP code via the template parameter. | |||||
CVE-2008-0224 | 1 Runcms | 1 Runcms | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the Newbb_plus 0.92 and earlier module in RunCMS 1.6.1 allows remote attackers to execute arbitrary SQL commands via the Client-Ip parameter. | |||||
CVE-2009-0106 | 1 Phpauctions | 1 Phpauctions | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitrary SQL commands via the user_id parameter. | |||||
CVE-2008-2872 | 1 Aspindir | 1 Shibby Shop | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in default.asp in sHibby sHop 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via the sayfa parameter. | |||||
CVE-2009-0333 | 1 Joomla | 2 Com Waticketsystem, Joomla | 2017-10-18 | 7.5 HIGH | N/A |
SQL injection vulnerability in the WebAmoeba (WA) Ticket System (com_waticketsystem) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a category action to index.php. |