Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown
CVE-2022-38540
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the create_kill_session interface.
0
Attacker Value
Unknown
CVE-2022-38539
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.7.5 to v1.8.5 was discovered to contain a SQL injection vulnerability via the where parameter at /archive/apply.
0
Attacker Value
Unknown
CVE-2022-38538
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.7.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the checksum parameter in the report module.
0
Attacker Value
Unknown
CVE-2022-38537
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.4.5 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_file, end_file, start_time, and stop_time parameters in the binlog2sql interface.
0
Attacker Value
Unknown
CVE-2022-38541
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.8.3 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_time and stop_time parameters in the my2sql interface.
0
Attacker Value
Unknown
CVE-2019-20008
Disclosure Date: December 26, 2019 (last updated November 27, 2024)
In Archery before 1.3, inserting an XSS payload into a project name (either by creating a new project or editing an existing one) will result in stored XSS on the vulnerability-scan scheduling page.
0
Attacker Value
Unknown
CVE-2010-1718
Disclosure Date: May 04, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in archeryscores.php in the Archery Scores (com_archeryscores) component 1.0.6 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.
0