Total
9311 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-1726 | 1 Myknowledgequest | 1 Knowledgequest | 2017-09-28 | 6.8 MEDIUM | N/A |
Multiple SQL injection vulnerabilities in KnowledgeQuest 2.6, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) kqid parameter to (a) articletext.php and (b) articletextonly.php and the (2) username parameter to (c) logincheck.php. | |||||
CVE-2008-1732 | 1 Predictionfootball | 1 Predictionfootball | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in showpredictionsformatch.php in Prediction Football 1.x allows remote attackers to execute arbitrary SQL commands via the matchid parameter in a dupa action. | |||||
CVE-2008-1750 | 1 Livecart | 1 Livecart | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in Integry Systems LiveCart 1.1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to the /category URI. | |||||
CVE-2008-1758 | 1 Kwsphp | 1 Kwsphp | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the ConcoursPhoto module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the C_ID parameter to index.php. | |||||
CVE-2008-1759 | 2 Jeuxflash, Kwsphp | 2 Jeuxflash Module, Kwsphp | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the jeuxflash module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php, a different vector than CVE-2007-4922. | |||||
CVE-2008-1774 | 1 Pligg | 1 Pligg Cms | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in editlink.php in Pligg 9.9.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1789 | 1 Prozilla | 1 Forum | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in forum.php in Prozilla Forum allows remote attackers to execute arbitrary SQL commands via the forum parameter. | |||||
CVE-2008-1791 | 1 Mygamingladder | 1 Mygamingladder | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in ladder.php in My Gaming Ladder 7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the ladderid parameter. | |||||
CVE-2008-1847 | 1 Coronamatrix | 1 Phpaddressbook | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in view.php in CoronaMatrix phpAddressBook 2.11 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1838 | 1 Bosdev | 1 Bosclassifieds Ads Systems | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in BosClassifieds Classified Ads System 3.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php. | |||||
CVE-2008-1859 | 1 Iscripts | 1 Socialware | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in events.php in iScripts SocialWare allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action. | |||||
CVE-2008-1858 | 1 724cms | 1 724cms | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in 724Networks 724CMS 4.01 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter. | |||||
CVE-2008-1907 | 1 Cpcommerce | 1 Cpcommerce | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in functions/display_page.func.php in cpCommerce 1.1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id_product, (2) id_manufacturer, and (3) id_category parameters to unspecified components. NOTE: this probably overlaps CVE-2007-2959 and CVE-2007-2890. | |||||
CVE-2008-1863 | 1 Prozilla | 1 Cheats | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in view_reviews.php in Prozilla Cheat Script (aka Cheats) 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1864 | 1 Prozilla | 1 Prozilla Freelancers | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in project.php in Prozilla Freelancers allows remote attackers to execute arbitrary SQL commands via the project parameter. | |||||
CVE-2008-1867 | 1 Pixel Motion | 1 Pixel Motion Blog | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in Blog Pixel Motion (aka Blog PixelMotion) allows remote attackers to execute arbitrary SQL commands via the categorie parameter to index.php, possibly related to include/requetesIndex.php. | |||||
CVE-2008-1869 | 1 Site Sift Media | 1 Site Sift Listings | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in Site Sift Listings allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. NOTE: this issue might be site-specific. | |||||
CVE-2008-1870 | 1 Geek247 | 1 Pigmy-sql | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in getdata.php in PIGMy-SQL 1.4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-1871 | 1 Scriptsagent | 1 Links Directory | 2017-09-28 | 6.5 MEDIUM | N/A |
SQL injection vulnerability in links.php in Scriptsagent.com Links Directory 1.1 allows remote authenticated users to execute arbitrary SQL commands via the cat_id parameter in a list action. | |||||
CVE-2008-1872 | 1 Comdev | 1 Comdev News Publisher | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in home.news.php in Comdev News Publisher 4.1.2 allows remote attackers to execute arbitrary SQL commands via the arcmonth parameter. NOTE: some of these details are obtained from third party information. |