Show filters
180 Total Results
Displaying 161-170 of 180
Sort by:
Attacker Value
Unknown

CVE-2013-6243

Disclosure Date: October 23, 2013 (last updated October 05, 2023)
SQL injection vulnerability in the Landing Pages plugin 1.2.3, before 20131009, and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the "post" parameter to index.php.
0
Attacker Value
Unknown

CVE-2011-4932

Disclosure Date: October 06, 2012 (last updated October 05, 2023)
Eval injection vulnerability in ip_cms/modules/standard/content_management/actions.php in ImpressPages CMS 1.0.12 and possibly other versons before 1.0.13 allows remote attackers to execute arbitrary code via the cm_group parameter.
0
Attacker Value
Unknown

CVE-2012-4001

Disclosure Date: September 15, 2012 (last updated October 05, 2023)
The mod_pagespeed module before 0.10.22.6 for the Apache HTTP Server does not properly verify its host name, which allows remote attackers to trigger HTTP requests to arbitrary hosts via unspecified vectors, as demonstrated by requests to intranet servers.
0
Attacker Value
Unknown

CVE-2012-4360

Disclosure Date: September 15, 2012 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the mod_pagespeed module 0.10.19.1 through 0.10.22.4 for the Apache HTTP Server allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2011-1669

Disclosure Date: April 10, 2011 (last updated October 04, 2023)
Directory traversal vulnerability in wp-download.php in the WP Custom Pages module 0.5.0.1 for WordPress allows remote attackers to read arbitrary files via ..%2F (encoded dot dot) sequences in the url parameter.
0
Attacker Value
Unknown

CVE-2009-2394

Disclosure Date: July 09, 2009 (last updated October 04, 2023)
SQL injection vulnerability in cat.php in SMSPages 1.0 in Mr.Saphp Arabic Script Mobile (aka Messages Library) 2.0 allows remote attackers to execute arbitrary SQL commands via the CatID parameter.
0
Attacker Value
Unknown

CVE-2008-6198

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in pages.php in Custom Pages 1.0 plugin for MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown

CVE-2008-5719

Disclosure Date: December 26, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Hitachi Groupmax Web Workflow SDK Set for Active Server Pages before 06-52-/C and Hitachi Groupmax Workflow - Development Kit for Active Server Pages before 06-52-/A allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2008-3347

Disclosure Date: July 28, 2008 (last updated October 04, 2023)
SQL injection vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows remote attackers to execute arbitrary SQL commands via the read parameter.
0
Attacker Value
Unknown

CVE-2008-3348

Disclosure Date: July 28, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows remote attackers to inject arbitrary web script or HTML via the year parameter.
0