Show filters
32 Total Results
Displaying 21-30 of 32
Sort by:
Attacker Value
Unknown
CVE-2010-4980
Disclosure Date: November 01, 2011 (last updated October 04, 2023)
SQL injection vulnerability in packagedetails.php in iScripts ReserveLogic 1.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
0
Attacker Value
Unknown
CVE-2010-2853
Disclosure Date: July 25, 2010 (last updated October 04, 2023)
SQL injection vulnerability in flashPlayer/playVideo.php in iScripts VisualCaster allows remote attackers to execute arbitrary SQL commands via the product_id parameter.
0
Attacker Value
Unknown
CVE-2010-2624
Disclosure Date: July 02, 2010 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in iScripts EasySnaps 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) comment parameter to add_comments.php, (2) values parameter to tags_details.php, or (3) begin parameter to greetings.php.
0
Attacker Value
Unknown
CVE-2009-2642
Disclosure Date: July 28, 2009 (last updated October 04, 2023)
index.php in Desi Short URL Script 1.0 allows remote attackers to bypass authentication by setting the logged cookie to 1 and the uid cookie to an integer value, as demonstrated by a value of 13.
0
Attacker Value
Unknown
CVE-2008-4169
Disclosure Date: September 22, 2008 (last updated October 04, 2023)
SQL injection vulnerability in detaillist.php in iScripts EasyIndex, possibly 1.0, allows remote attackers to execute arbitrary SQL commands via the produid parameter.
0
Attacker Value
Unknown
CVE-2008-1859
Disclosure Date: April 16, 2008 (last updated October 04, 2023)
SQL injection vulnerability in events.php in iScripts SocialWare allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action.
0
Attacker Value
Unknown
CVE-2008-1790
Disclosure Date: April 15, 2008 (last updated October 04, 2023)
Unrestricted file upload vulnerability in iScripts SocialWare allows remote authenticated administrators to upload arbitrary files via a crafted logo file in the "Manage Settings" functionality. NOTE: remote exploitation is facilitated by a separate SQL injection vulnerability.
0
Attacker Value
Unknown
CVE-2008-1772
Disclosure Date: April 14, 2008 (last updated October 04, 2023)
iScripts SocialWare stores passwords in cleartext in a database, which allows context-dependent attackers to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2008-0911
Disclosure Date: February 22, 2008 (last updated October 04, 2023)
SQL injection vulnerability in productdetails.php in iScripts MultiCart 2.0 allows remote authenticated users to execute arbitrary SQL commands via the productid parameter.
0
Attacker Value
Unknown
CVE-2007-6641
Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in dir.php in milliscripts Redirection allows remote attackers to inject arbitrary web script or HTML via the cat parameter in a browse action.
0