Show filters
25 Total Results
Displaying 21-25 of 25
Sort by:
Attacker Value
Unknown
CVE-2003-0494
Disclosure Date: August 07, 2003 (last updated February 22, 2025)
password.asp in Snitz Forums 3.4.03 and earlier allows remote attackers to reset passwords and gain privileges as other users by via a direct request to password.asp with a modified member id.
0
Attacker Value
Unknown
CVE-2003-0493
Disclosure Date: August 07, 2003 (last updated February 22, 2025)
Snitz Forums 3.4.03 and earlier allows attackers to gain privileges as other users by stealing and replaying the encrypted password after obtaining a valid session ID.
0
Attacker Value
Unknown
CVE-2003-0286
Disclosure Date: June 16, 2003 (last updated February 22, 2025)
SQL injection vulnerability in register.asp in Snitz Forums 2000 before 3.4.03, and possibly 3.4.07 and earlier, allows remote attackers to execute arbitrary stored procedures via the Email variable.
0
Attacker Value
Unknown
CVE-2002-0329
Disclosure Date: June 25, 2002 (last updated February 22, 2025)
Cross-site scripting vulnerability in Snitz Forums 2000 3.3.03 and earlier allows remote attackers to execute arbitrary script as other Forums 2000 users via Javascript in an IMG tag.
0
Attacker Value
Unknown
CVE-2002-0607
Disclosure Date: June 18, 2002 (last updated February 22, 2025)
members.asp in Snitz Forums 2000 version 3.3.03 and earlier allows remote attackers to execute arbitrary code via a SQL injection attack on the parameters (1) M_NAME, (2) UserName, (3) FirstName, (4) LastName, or (5) INITIAL.
0