Show filters
18 Total Results
Displaying 1-10 of 18
Sort by:
Attacker Value
Unknown

CVE-2013-3256

Disclosure Date: August 08, 2013 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the Shareaholic SexyBookmarks plugin 6.1.4.0 for WordPress allows remote attackers to hijack the authentication of users for requests that "manipulate plugin settings."
0
Attacker Value
Unknown

CVE-2010-4915

Disclosure Date: October 08, 2011 (last updated October 04, 2023)
SQL injection vulnerability in index.cfm in ColdGen ColdBookmarks 1.22 allows remote attackers to execute arbitrary SQL commands via the BookmarkID parameter in an EditBookmark action.
0
Attacker Value
Unknown

CVE-2008-6410

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in show.php in ol'bookmarks manager 0.7.5 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter.
0
Attacker Value
Unknown

CVE-2008-6407

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the framefile parameter.
0
Attacker Value
Unknown

CVE-2008-6409

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary SQL commands via the id parameter in a brain action.
0
Attacker Value
Unknown

CVE-2008-6408

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary PHP code via a URL in the framefile parameter.
0
Attacker Value
Unknown

CVE-2008-6007

Disclosure Date: January 30, 2009 (last updated October 04, 2023)
SQL injection vulnerability in view_group.php in QuidaScript BookMarks Favourites Script (APB) allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown

CVE-2008-3748

Disclosure Date: August 21, 2008 (last updated October 04, 2023)
SQL injection vulnerability in view_group.php in Active PHP Bookmarks (APB) 1.1.02 and 1.2.06 allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown

CVE-2007-2817

Disclosure Date: May 22, 2007 (last updated October 04, 2023)
SQL injection vulnerability in read/index.php in ol'bookmarks 0.7.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown

CVE-2007-2816

Disclosure Date: May 22, 2007 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in ol'bookmarks 0.7.4 allow remote attackers to execute arbitrary PHP code via a URL in the root parameter to (1) test1.php, (2) blackorange.php, (3) default.php, (4) frames1.php, (5) frames1_top.php, (7) test2.php, (8) test3.php, (9) test4.php, (10) test5.php, (11) test6.php, (12) frames1_left.php, and (13) frames1_center.php in themes/.
0