Total
9311 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-3254 | 1 Precoc | 1 Precms | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in index.php in preCMS 1 allows remote attackers to execute arbitrary SQL commands via the id parameter in a UserProfil action. | |||||
CVE-2008-3204 | 1 E-topbiz | 1 Million Pixels | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQL commands via the id_cat parameter. | |||||
CVE-2008-3200 | 1 Easy-script | 1 Avlc Forum | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in vlc_forum.php in Avlc Forum as of 20080715 allows remote attackers to execute arbitrary SQL commands via the id parameter in an affich_message action. | |||||
CVE-2008-3213 | 1 Webcms | 1 Webcms Portal Edition | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in secciones/tablon/tablon.php in WebCMS Portal Edition allows remote attackers to execute arbitrary SQL commands via the id parameter to portal/index.php in a tablon action. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-3265 | 1 Joomla | 1 Com Dtregister | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in the DT Register (com_dtregister) 2.2.3 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the eventId parameter in a pay_options action to index.php. | |||||
CVE-2008-3238 | 1 Itechscripts | 1 Itechbids | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in ITechBids 7.0 Gold allow remote attackers to execute arbitrary SQL commands via (1) the seller_id parameter in sellers_othersitem.php, (2) the productid parameter in classifieds.php, and (3) the id parameter in shop.php. | |||||
CVE-2008-3240 | 1 Alstrasoft | 1 Affiliate Network Pro | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in AlstraSoft Affiliate Network Pro allows remote attackers to execute arbitrary SQL commands via the pgm parameter in a directory action. | |||||
CVE-2008-3241 | 1 Ultrastats | 1 Ultrastats | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in players-detail.php in UltraStats 0.2.136, 0.2.140, and 0.2.142 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-3245 | 1 Cable-modems | 1 Phphoo3 | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in phpHoo3.php in phpHoo3 4.3.9, 4.3.10, 4.4.8, and 5.2.6 allows remote attackers to execute arbitrary SQL commands via the viewCat parameter. | |||||
CVE-2008-3250 | 1 Arctictracker | 1 Arctic Issue Tracker | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Arctic Issue Tracker 2.0.0 allows remote attackers to execute arbitrary SQL commands via the filter parameter. | |||||
CVE-2008-3251 | 1 Tpl Design | 1 Tplsoccersite | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in tplSoccerSite 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the opp parameter to tampereunited/opponent.php; or the id parameter to (2) index.php, (3) player.php, (4) matchdetails.php, or (5) additionalpage.php in tampereunited/. | |||||
CVE-2008-3256 | 1 Siteframe | 2 Siteframe Beaumont, Siteframe Cms | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in folder.php in Siteframe CMS 3.2.3 and earlier, and Siteframe Beaumont 5.0.5 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-3266 | 1 Softacid | 1 Hotel Reservation System Multi | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in picture_pic_bv.asp in SoftAcid Hotel Reservation System (HRS) Multi allows remote attackers to execute arbitrary SQL commands via the key parameter. | |||||
CVE-2008-3267 | 1 Mojoscripts | 1 Mojojobs | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in mojoJobs.cgi in MojoJobs allows remote attackers to execute arbitrary SQL commands via the cat_a parameter. | |||||
CVE-2008-3291 | 1 Aprox | 2 Aprox Cms Engine, Aproxengine | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in AproxEngine (aka Aprox CMS Engine) 5.1.0.4 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-3302 | 1 Tuxplanet | 1 Bilboblog | 2017-09-28 | 6.0 MEDIUM | N/A |
SQL injection vulnerability in admin/delete.php in BilboBlog 0.2.1, when magic_quotes_gpc is disabled, allows remote authenticated administrators to execute arbitrary SQL commands via the num parameter. | |||||
CVE-2008-3307 | 1 Youtube Blog | 1 Youtube Blog | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in todos.php in C. Desseno YouTube Blog (ytb) 0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2008-3306. | |||||
CVE-2008-3309 | 1 Digiappz | 1 Digileave | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in info_book.asp in DigiLeave 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the book_id parameter. | |||||
CVE-2008-3310 | 1 Preproject | 1 Pre Survey Poll | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in default.asp in Pre Survey Poll allows remote attackers to execute arbitrary SQL commands via the catid parameter. | |||||
CVE-2008-3346 | 1 E-topbiz | 1 Shopcart Dx | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in product_detail.php in ShopCart DX allows remote attackers to execute arbitrary SQL commands via the pid parameter. |