Total
9311 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-1053 | 1 Phpnuke | 1 Kose Yazilari Module | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in the Kose_Yazilari module for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the artid parameter in a (1) viewarticle or (2) printpage action to modules.php. | |||||
CVE-2008-1121 | 1 Eazyportal | 1 Eazyportal | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in eazyPortal 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the session_vars cookie. | |||||
CVE-2008-1163 | 1 Phparcadescript | 1 Phparcadescript | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in phpArcadeScript 1.0 through 3.0 RC2 allows remote attackers to execute arbitrary SQL commands via the userid parameter in a profile action. | |||||
CVE-2008-1164 | 1 Phpcomasy | 1 Phpcomasy | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in phpComasy 0.8 allows remote attackers to execute arbitrary SQL commands via the mod_project_id parameter in a project_detail action. | |||||
CVE-2008-1177 | 1 Affiliate Market | 1 Affiliate Market | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in shop/detail.php in Affiliate Market (affmarket) 0.1 BETA allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1295 | 1 Gregory Kokanosky | 1 Phpmynewsletter | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in archives.php in Gregory Kokanosky (aka Greg's Place) phpMyNewsletter 0.8 beta 5 and earlier allows remote attackers to execute arbitrary SQL commands via the msg_id parameter. | |||||
CVE-2008-1272 | 1 Bmscripts | 1 Bm Classifieds | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in BM Classifieds 20080309 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showad.php and the (2) ad parameter to pfriendly.php. | |||||
CVE-2008-1297 | 3 Ewriting, Joomla, Mambo | 3 Ewriting, Com Ewriting, Com Ewriting | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the eWriting (com_ewriting) 1.2.1 module for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat action. | |||||
CVE-2008-1305 | 2 Chieminger, Phpbb | 2 Filebase Module, Phpbb | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in filebase.php in the Filebase mod for phpBB allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1313 | 1 Bill Roberts | 1 Bloo | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in index.php in Bloo 1.00 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) post_id, (2) post_category_id, (3) post_year_month, and (4) static_page_id parameters; and unspecified other vectors. | |||||
CVE-2008-1316 | 1 Qt-cute | 1 Quicktalk Forum | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in qtf_ind_search_ov.php in QT-cute QuickTalk Forum 1.6 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1349 | 1 Exv2 | 2 Bamagalerie, Exv2 | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in viewcat.php in the bamaGalerie (Bama Galerie) 3.03 and 3.041 module for eXV2 2.0.6 allows remote attackers to execute arbitrary SQL commands via the cid parameter. | |||||
CVE-2008-1351 | 1 Xoops | 1 Tutoriais Module | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Tutorials 2.1b module for XOOPS allows remote attackers to execute arbitrary SQL commands via the tid parameter to printpage.php, which is accessible directly or through a printpage action to index.php. | |||||
CVE-2008-1398 | 1 Auracms | 1 Auracms | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in online.php in AuraCMS 2.0 through 2.2.1 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For field (HTTP_X_FORWARDED_FOR environment variable) in an HTTP header. | |||||
CVE-2008-1404 | 1 Exv2 | 1 Exv2 | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in index.php in the Viso (Industry Book) 2.04 and 2.03 module for eXV2 allows remote attackers to execute arbitrary SQL commands via the kid parameter. | |||||
CVE-2008-1407 | 1 Exv2 | 1 Exv2 | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in index.php in the WebChat 1.60 module for eXV2 allows remote attackers to execute arbitrary SQL commands via the roomid parameter. | |||||
CVE-2008-1406 | 1 Exv2 | 1 Exv2 | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in annonces-p-f.php in the MyAnnonces 1.8 module for eXV2 allows remote attackers to execute arbitrary SQL commands via the lid parameter in an ImprAnn action. | |||||
CVE-2008-1408 | 1 Phpbp | 1 Phpbp | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in includes/functions/banners-external.php in phpBP 2 RC3 (2.204) FIX 4 allows remote attackers to execute arbitrary SQL commands via the id parameter in a banner_out action. | |||||
CVE-2008-1425 | 1 Easy-clanpage | 1 Easy-clanpage | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in the gallery module in Easy-Clanpage 2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter in a kate action. | |||||
CVE-2008-1427 | 2 Joobi, Joomla | 2 Acajoom, Com Acajoom | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Joobi Acajoom (com_acajoom) 1.1.5 and 1.2.5 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mailingid parameter in a mailing view action to index.php. |