Show filters
16 Total Results
Displaying 11-16 of 16
Sort by:
Attacker Value
Unknown

CVE-2008-7041

Disclosure Date: August 24, 2009 (last updated October 04, 2023)
AJ Classifieds allows remote attackers to bypass authentication and gain administrator privileges via a direct request to admin/home.php.
0
Attacker Value
Unknown

CVE-2008-7046

Disclosure Date: August 24, 2009 (last updated October 04, 2023)
AJ Square Free Polling Script (AJPoll) allows remote attackers to bypass authentication and create new polls via a direct request to admin/include/newpoll.php, a different vector than CVE-2008-7045. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2008-7044

Disclosure Date: August 24, 2009 (last updated October 04, 2023)
SQL injection vulnerability in admin/include/newpoll.php in AJ Square Free Polling Script (AJPoll) Database version allows remote attackers to execute arbitrary SQL commands via the ques parameter.
0
Attacker Value
Unknown

CVE-2008-7051

Disclosure Date: August 24, 2009 (last updated October 04, 2023)
AJ Square AJ Article allows remote attackers to bypass authentication and access administrator functionality via a direct request to (1) user.php, (2) articles.php, (3) articlesuspend.php, (4) site.php, (5) statistics.php, (6) mail.php, (7) category.php, (8) subcategory.php, (9) changepassword.php, (10) polling.php, and (11) logo.php in admin/.
0
Attacker Value
Unknown

CVE-2009-2779

Disclosure Date: August 17, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in AJ Matrix DNA allows remote attackers to execute arbitrary SQL commands via the id parameter in a productdetail action.
0
Attacker Value
Unknown

CVE-2008-6721

Disclosure Date: April 14, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in AJ Square AJ Article allows remote attackers to execute arbitrary SQL commands via the txtName parameter (aka the username field).
0