Total
9311 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-5131 | 1 Develop It Easy | 1 News And Article System | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Develop It Easy News And Article System 1.4 allow remote attackers to execute arbitrary SQL commands via (1) the aid parameter to article_details.php, and the (2) username and (3) password to the admin panel (admin/index.php). | |||||
CVE-2008-5132 | 1 Memht | 1 Memht Portal | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in inc/ajax/ajax_rating.php in MemHT Portal 4.0.1 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header. | |||||
CVE-2008-5226 | 3 Joomla, Mambads, Mambo | 3 Joomla, Mambads, Mambo | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the MambAds (com_mambads) component 1.0 RC1 Beta and 1.0 RC1 for Mambo allows remote attackers to execute arbitrary SQL commands via the ma_cat parameter in a view action to index.php, a different vector than CVE-2007-5177. | |||||
CVE-2008-5166 | 1 Easysitenetwork | 1 Riddles Website | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in riddle.php in Riddles Website 1.2.1 allows remote attackers to execute arbitrary SQL commands via the riddleid parameter. | |||||
CVE-2008-5168 | 1 Easysitenetwork | 1 Tips Complete Website | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in tip.php in Tips Complete Website 1.2.0 allows remote attackers to execute arbitrary SQL commands via the tipid parameter. | |||||
CVE-2008-5169 | 1 Easysitenetwork | 1 Drinks Complete Website | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in drinks/drink.php in Drinks Complete Website 2.1.0 allows remote attackers to execute arbitrary SQL commands via the drinkid parameter. | |||||
CVE-2008-5170 | 1 Easysitenetwork | 1 Cheats Complete Website | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in item.php in Cheats Complete Website 1.1.1 allows remote attackers to execute arbitrary SQL commands via the itemid parameter. | |||||
CVE-2008-5174 | 1 Easysitenetwork | 1 Jokes Complete Website | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in joke.php in Jokes Complete Website 2.1.3 allows remote attackers to execute arbitrary SQL commands via the jokeid parameter. | |||||
CVE-2008-5190 | 1 Eshop100 | 1 Eshop100 | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in eSHOP100 allows remote attackers to execute arbitrary SQL commands via the SUB parameter. | |||||
CVE-2008-5191 | 1 Seportal | 1 Seportal | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in SePortal 2.4 allow remote attackers to execute arbitrary SQL commands via the (1) poll_id parameter to poll.php and the (2) sp_id parameter to staticpages.php. | |||||
CVE-2008-5192 | 1 Philboard | 1 Philboard | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in forum.asp in W1L3D4 Philboard 1.14 and 1.2 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. NOTE: this might overlap CVE-2008-2334, CVE-2008-1939, CVE-2007-2641, or CVE-2007-0920. | |||||
CVE-2008-5194 | 1 Softvisions Software | 1 Online Booking Manager | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in checkavail.php in SoftVisions Software Online Booking Manager (obm) 2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-5195 | 1 Sebrac | 1 Sebraccms | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in SebracCMS (sbcms) 0.4 allow remote attackers to execute arbitrary SQL commands via (1) the recid parameter to cms/form/read.php, (2) the uname parameter to cms/index.php, and other unspecified vectors. | |||||
CVE-2008-5196 | 1 Php-fusion | 2 Php-fusion, The Kroax Module | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in kroax.php in the Kroax (the_kroax) 4.42 and earlier module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the category parameter. | |||||
CVE-2008-5200 | 2 Joomla, Mambo | 3 Com Xewebtv, Joomla, Mambo | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Xe webtv (com_xewebtv) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. | |||||
CVE-2008-5208 | 2 Joomla, Mambo | 3 Com Datsogallery, Joomla, Mambo | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in sub_votepic.php in the Datsogallery (com_datsogallery) module 1.6 for Joomla! allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header. | |||||
CVE-2008-5212 | 1 Aj Square | 1 Aj Auction | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in classifide_ad.php in AJ Auction 6.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the item_id parameter. | |||||
CVE-2008-5213 | 1 Aj Square | 1 Aj Article | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in featured_article.php in AJ Article 1.0 allows remote attackers to execute arbitrary SQL commands via the artid parameter in a search detail action. | |||||
CVE-2008-5215 | 1 Clanlite | 1 Clanlite | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in service/profil.php in ClanLite 2.2006.05.20 allows remote attackers to execute arbitrary SQL commands via the link parameter. | |||||
CVE-2008-5216 | 1 Aj Square | 1 Zeuscart | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in category_list.php in AJ Square ZeusCart 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter. |