Show filters
13 Total Results
Displaying 1-10 of 13
Sort by:
Attacker Value
Unknown
CVE-2009-4675
Disclosure Date: March 05, 2010 (last updated October 04, 2023)
admin/admin_info/index.php in the Mole Group Gastro Portal (Restaurant Directory) Script does not require administrative authentication, which allows remote attackers to change the admin password via an unspecified form submission.
0
Attacker Value
Unknown
CVE-2009-4674
Disclosure Date: March 05, 2010 (last updated October 04, 2023)
admin/admin.php in Mole Group Sky Hunter Airline Ticket Sale Script and Bus Ticket Script allows remote attackers to change an arbitrary password via a modified user_id field.
0
Attacker Value
Unknown
CVE-2009-4673
Disclosure Date: March 05, 2010 (last updated October 04, 2023)
SQL injection vulnerability in profile.php in Mole Group Adult Portal Script allows remote attackers to execute arbitrary SQL commands via the user_id parameter.
0
Attacker Value
Unknown
CVE-2008-6818
Disclosure Date: June 01, 2009 (last updated October 04, 2023)
Mole Group Real Estate Script 1.1 and earlier stores passwords in cleartext, which allows context-dependent attackers to obtain sensitive information. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2008-6817
Disclosure Date: June 01, 2009 (last updated October 04, 2023)
Mole Group Lastminute Script 4.0 and earlier stores passwords in cleartext, which allows context-dependent attackers to obtain sensitive information. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2008-6484
Disclosure Date: March 18, 2009 (last updated October 04, 2023)
SQL injection vulnerability in login.php in Mole Group Taxi Map Script (aka Taxi Calc Dist Script) allows remote attackers to execute arbitrary SQL commands via the user field.
0
Attacker Value
Unknown
CVE-2008-6225
Disclosure Date: February 20, 2009 (last updated November 08, 2023)
SQL injection vulnerability in info.php in Mole Group Airline Ticket Sale Script allows remote attackers to execute arbitrary SQL commands via the flight parameter. NOTE: the vendor has disputed this issue, stating "crazy hackers and so named Security companies [spread] out such false informations. Such scripts or versions [do not] exist.
0
Attacker Value
Unknown
CVE-2008-5046
Disclosure Date: November 13, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Mole Group Pizza Script allows remote attackers to execute arbitrary SQL commands via the manufacturers_id parameter.
0
Attacker Value
Unknown
CVE-2008-5047
Disclosure Date: November 13, 2008 (last updated October 04, 2023)
SQL injection vulnerability in admin/index.php in Mole Group Rental Script allows remote attackers to execute arbitrary SQL commands via the username parameter.
0
Attacker Value
Unknown
CVE-2008-3124
Disclosure Date: July 10, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Mole Group Hotel Script 1.0 allows remote attackers to execute arbitrary SQL commands via the file parameter.
0