Show filters
32 Total Results
Displaying 21-30 of 32
Sort by:
Attacker Value
Unknown

CVE-2010-4980

Disclosure Date: November 01, 2011 (last updated October 04, 2023)
SQL injection vulnerability in packagedetails.php in iScripts ReserveLogic 1.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
0
Attacker Value
Unknown

CVE-2010-2853

Disclosure Date: July 25, 2010 (last updated October 04, 2023)
SQL injection vulnerability in flashPlayer/playVideo.php in iScripts VisualCaster allows remote attackers to execute arbitrary SQL commands via the product_id parameter.
0
Attacker Value
Unknown

CVE-2010-2624

Disclosure Date: July 02, 2010 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in iScripts EasySnaps 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) comment parameter to add_comments.php, (2) values parameter to tags_details.php, or (3) begin parameter to greetings.php.
0
Attacker Value
Unknown

CVE-2009-2642

Disclosure Date: July 28, 2009 (last updated October 04, 2023)
index.php in Desi Short URL Script 1.0 allows remote attackers to bypass authentication by setting the logged cookie to 1 and the uid cookie to an integer value, as demonstrated by a value of 13.
0
Attacker Value
Unknown

CVE-2008-4169

Disclosure Date: September 22, 2008 (last updated October 04, 2023)
SQL injection vulnerability in detaillist.php in iScripts EasyIndex, possibly 1.0, allows remote attackers to execute arbitrary SQL commands via the produid parameter.
0
Attacker Value
Unknown

CVE-2008-1859

Disclosure Date: April 16, 2008 (last updated October 04, 2023)
SQL injection vulnerability in events.php in iScripts SocialWare allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action.
0
Attacker Value
Unknown

CVE-2008-1790

Disclosure Date: April 15, 2008 (last updated October 04, 2023)
Unrestricted file upload vulnerability in iScripts SocialWare allows remote authenticated administrators to upload arbitrary files via a crafted logo file in the "Manage Settings" functionality. NOTE: remote exploitation is facilitated by a separate SQL injection vulnerability.
0
Attacker Value
Unknown

CVE-2008-1772

Disclosure Date: April 14, 2008 (last updated October 04, 2023)
iScripts SocialWare stores passwords in cleartext in a database, which allows context-dependent attackers to obtain sensitive information.
0
Attacker Value
Unknown

CVE-2008-0911

Disclosure Date: February 22, 2008 (last updated October 04, 2023)
SQL injection vulnerability in productdetails.php in iScripts MultiCart 2.0 allows remote authenticated users to execute arbitrary SQL commands via the productid parameter.
0
Attacker Value
Unknown

CVE-2007-6641

Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in dir.php in milliscripts Redirection allows remote attackers to inject arbitrary web script or HTML via the cat parameter in a browse action.
0