Show filters
180 Total Results
Displaying 161-170 of 180
Sort by:
Attacker Value
Unknown
CVE-2013-6243
Disclosure Date: October 23, 2013 (last updated October 05, 2023)
SQL injection vulnerability in the Landing Pages plugin 1.2.3, before 20131009, and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the "post" parameter to index.php.
0
Attacker Value
Unknown
CVE-2011-4932
Disclosure Date: October 06, 2012 (last updated October 05, 2023)
Eval injection vulnerability in ip_cms/modules/standard/content_management/actions.php in ImpressPages CMS 1.0.12 and possibly other versons before 1.0.13 allows remote attackers to execute arbitrary code via the cm_group parameter.
0
Attacker Value
Unknown
CVE-2012-4001
Disclosure Date: September 15, 2012 (last updated October 05, 2023)
The mod_pagespeed module before 0.10.22.6 for the Apache HTTP Server does not properly verify its host name, which allows remote attackers to trigger HTTP requests to arbitrary hosts via unspecified vectors, as demonstrated by requests to intranet servers.
0
Attacker Value
Unknown
CVE-2012-4360
Disclosure Date: September 15, 2012 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the mod_pagespeed module 0.10.19.1 through 0.10.22.4 for the Apache HTTP Server allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2011-1669
Disclosure Date: April 10, 2011 (last updated October 04, 2023)
Directory traversal vulnerability in wp-download.php in the WP Custom Pages module 0.5.0.1 for WordPress allows remote attackers to read arbitrary files via ..%2F (encoded dot dot) sequences in the url parameter.
0
Attacker Value
Unknown
CVE-2009-2394
Disclosure Date: July 09, 2009 (last updated October 04, 2023)
SQL injection vulnerability in cat.php in SMSPages 1.0 in Mr.Saphp Arabic Script Mobile (aka Messages Library) 2.0 allows remote attackers to execute arbitrary SQL commands via the CatID parameter.
0
Attacker Value
Unknown
CVE-2008-6198
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in pages.php in Custom Pages 1.0 plugin for MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown
CVE-2008-5719
Disclosure Date: December 26, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Hitachi Groupmax Web Workflow SDK Set for Active Server Pages before 06-52-/C and Hitachi Groupmax Workflow - Development Kit for Active Server Pages before 06-52-/A allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2008-3347
Disclosure Date: July 28, 2008 (last updated October 04, 2023)
SQL injection vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows remote attackers to execute arbitrary SQL commands via the read parameter.
0
Attacker Value
Unknown
CVE-2008-3348
Disclosure Date: July 28, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows remote attackers to inject arbitrary web script or HTML via the year parameter.
0