Total
9311 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2010-4861 | 1 Webspell | 1 Webspell | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in asearch.php in webSPELL 4.2.1 allows remote attackers to execute arbitrary SQL commands via the search parameter. | |||||
CVE-2010-4860 | 1 Galaxyscriptz | 1 Myphpauction | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in product_desc.php in MyPhpAuction 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2010-4894 | 1 Chillycms | 1 Chillycms | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in core/showsite.php in chillyCMS 1.1.3 allows remote attackers to execute arbitrary SQL commands via the name parameter. NOTE: some of these details are obtained from third party information. | |||||
CVE-2010-4869 | 1 Drbenhur | 1 Dbhcms | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in DBHcms 1.1.4 allows remote attackers to execute arbitrary SQL commands via the editmenu parameter. | |||||
CVE-2010-4862 | 2 Harmistechnology, Joomla | 2 Com Jedirectory, Joomla\! | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the JExtensions JE Directory (com_jedirectory) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an item action to index.php. | |||||
CVE-2010-4872 | 1 Pilotcart | 1 Pilot Cart | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in newsroom.asp in ASPilot Pilot Cart 7.3 allows remote attackers to execute arbitrary SQL commands via the specific parameter. | |||||
CVE-2010-4915 | 1 Coldgen | 1 Coldbookmarks | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.cfm in ColdGen ColdBookmarks 1.22 allows remote attackers to execute arbitrary SQL commands via the BookmarkID parameter in an EditBookmark action. | |||||
CVE-2010-4912 | 1 Discuz | 1 Ucenter Home | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in shop.php in UCenter Home 2.0 allows remote attackers to execute arbitrary SQL commands via the shopid parameter in a view action. | |||||
CVE-2010-4910 | 1 Coldgen | 1 Coldcalendar | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.cfm in ColdGen ColdCalendar 2.06 allows remote attackers to execute arbitrary SQL commands via the EventID parameter in a ViewEventDetails action. | |||||
CVE-2010-4911 | 1 Sellatsite | 1 Php Classifieds Ads | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in classi/detail.php in PHP Classifieds Ads allows remote attackers to execute arbitrary SQL commands via the sid parameter. | |||||
CVE-2010-4908 | 1 Virtuenetz | 1 Virtue Shopping Mall | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in detail.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL commands via the prodid parameter. | |||||
CVE-2010-4920 | 1 Micronetsoft | 1 Rental Property Website | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in detail.asp in Micronetsoft Rental Property Management Website 1.0 allows remote attackers to execute arbitrary SQL commands via the ad_ID parameter. | |||||
CVE-2010-4916 | 1 Coldgen | 1 Coldusergroup | 2017-08-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in index.cfm in ColdGen ColdUserGroup 1.06 allow remote attackers to execute arbitrary SQL commands via the (1) ArticleID or (2) LibraryID parameter. | |||||
CVE-2010-4917 | 1 A-blog | 1 A-blog | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in sources/search.php in A-Blog 2.0 allows remote attackers to execute arbitrary SQL commands via the words parameter. | |||||
CVE-2010-5044 | 2 Joomla, Kanich | 2 Joomla\!, Com Searchlog | 2017-08-28 | 6.0 MEDIUM | N/A |
SQL injection vulnerability in models/log.php in the Search Log (com_searchlog) component 3.1.0 for Joomla! allows remote authenticated users, with Public Back-end privileges, to execute arbitrary SQL commands via the search parameter in a log action to administrator/index.php. NOTE: some of these details are obtained from third party information. | |||||
CVE-2010-5039 | 1 Scriptsfeed | 1 Recipes Listing Portal | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in control/admin_login.php in ScriptsFeed Recipes Listing Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the loginid parameter (aka the UserName field). NOTE: some of these details are obtained from third party information. | |||||
CVE-2011-2080 | 1 Inventivetec | 1 Mediacast | 2017-08-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in MediaCAST 8 and earlier allow remote attackers to execute arbitrary SQL commands via (1) a CP_ENLARGESTYLE cookie to the default URI under inventivex/managetraining/ or (2) unspecified input to authenticate_ad_setup_finished.cfm. | |||||
CVE-2011-2467 | 1 Likewise | 1 Likewise Open | 2017-08-28 | 5.8 MEDIUM | N/A |
SQL injection vulnerability in lsassd in Lsass in the Likewise Security Authority in Likewise Open 5.4 through 6.1, and Likewise Enterprise 6.0, allows local users to execute arbitrary SQL commands via unspecified vectors. | |||||
CVE-2010-4919 | 1 Micronetsoft | 1 Rv Dealer Website | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in detail.asp in Micronetsoft RV Dealer Website 1.0 allows remote attackers to execute arbitrary SQL commands via the vehicletypeID parameter. | |||||
CVE-2010-4944 | 2 Joomla, Mambo-foundation | 3 Com Elite Experts, Joomla\!, Mambo | 2017-08-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the Elite Experts (com_elite_experts) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showExpertProfileDetailed action to index.php. |