Show filters
25 Total Results
Displaying 21-25 of 25
Sort by:
Attacker Value
Unknown

CVE-2003-0494

Disclosure Date: August 07, 2003 (last updated February 22, 2025)
password.asp in Snitz Forums 3.4.03 and earlier allows remote attackers to reset passwords and gain privileges as other users by via a direct request to password.asp with a modified member id.
0
Attacker Value
Unknown

CVE-2003-0493

Disclosure Date: August 07, 2003 (last updated February 22, 2025)
Snitz Forums 3.4.03 and earlier allows attackers to gain privileges as other users by stealing and replaying the encrypted password after obtaining a valid session ID.
0
Attacker Value
Unknown

CVE-2003-0286

Disclosure Date: June 16, 2003 (last updated February 22, 2025)
SQL injection vulnerability in register.asp in Snitz Forums 2000 before 3.4.03, and possibly 3.4.07 and earlier, allows remote attackers to execute arbitrary stored procedures via the Email variable.
0
Attacker Value
Unknown

CVE-2002-0329

Disclosure Date: June 25, 2002 (last updated February 22, 2025)
Cross-site scripting vulnerability in Snitz Forums 2000 3.3.03 and earlier allows remote attackers to execute arbitrary script as other Forums 2000 users via Javascript in an IMG tag.
0
Attacker Value
Unknown

CVE-2002-0607

Disclosure Date: June 18, 2002 (last updated February 22, 2025)
members.asp in Snitz Forums 2000 version 3.3.03 and earlier allows remote attackers to execute arbitrary code via a SQL injection attack on the parameters (1) M_NAME, (2) UserName, (3) FirstName, (4) LastName, or (5) INITIAL.
0