Show filters
41 Total Results
Displaying 31-40 of 41
Sort by:
Attacker Value
Unknown
CVE-2008-2207
Disclosure Date: May 14, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in admin/index.php in Maian Gallery 2.0 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search action.
0
Attacker Value
Unknown
CVE-2008-2201
Disclosure Date: May 14, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Recipe 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) header, (2) header2, (3) header3, (4) header4, (5) header5, (6) header6, (7) header7, (8) header8, and (9) header9 parameters.
0
Attacker Value
Unknown
CVE-2008-2205
Disclosure Date: May 14, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Maian Music 1.1 allows remote attackers to execute arbitrary SQL commands via the album parameter in an album action.
0
Attacker Value
Unknown
CVE-2008-1075
Disclosure Date: February 29, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in Maian Cart 1.1 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search command. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2007-2077
Disclosure Date: April 18, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, but confirmed by the vendor, stating "this issue was fixed last year and [no] is longer a problem."
0
Attacker Value
Unknown
CVE-2007-2078
Disclosure Date: April 18, 2007 (last updated November 08, 2023)
PHP remote file inclusion vulnerability in index.php in Maian Weblog 3.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, since the path_to_folder variable is initialized before use
0
Attacker Value
Unknown
CVE-2007-2076
Disclosure Date: April 18, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in index.php in Maian Gallery 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, but confirmed by the vendor, stating "this problem existed only briefly in v1.0."
0
Attacker Value
Unknown
CVE-2007-0848
Disclosure Date: February 08, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in classes/class_mail.inc.php in Maian Recipe 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter.
0
Attacker Value
Unknown
CVE-2006-1341
Disclosure Date: March 21, 2006 (last updated February 22, 2025)
SQL injection vulnerability in events.php in Maian Events 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) month and (2) year parameters.
0
Attacker Value
Unknown
CVE-2006-1334
Disclosure Date: March 21, 2006 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in Maian Weblog 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) entry and (2) email parameters to (a) print.php and (b) mail.php.
0