Show filters
41 Total Results
Displaying 31-40 of 41
Sort by:
Attacker Value
Unknown

CVE-2008-2207

Disclosure Date: May 14, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in admin/index.php in Maian Gallery 2.0 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search action.
0
Attacker Value
Unknown

CVE-2008-2201

Disclosure Date: May 14, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Recipe 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) header, (2) header2, (3) header3, (4) header4, (5) header5, (6) header6, (7) header7, (8) header8, and (9) header9 parameters.
0
Attacker Value
Unknown

CVE-2008-2205

Disclosure Date: May 14, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Maian Music 1.1 allows remote attackers to execute arbitrary SQL commands via the album parameter in an album action.
0
Attacker Value
Unknown

CVE-2008-1075

Disclosure Date: February 29, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in Maian Cart 1.1 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search command. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2007-2077

Disclosure Date: April 18, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, but confirmed by the vendor, stating "this issue was fixed last year and [no] is longer a problem."
0
Attacker Value
Unknown

CVE-2007-2078

Disclosure Date: April 18, 2007 (last updated November 08, 2023)
PHP remote file inclusion vulnerability in index.php in Maian Weblog 3.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, since the path_to_folder variable is initialized before use
0
Attacker Value
Unknown

CVE-2007-2076

Disclosure Date: April 18, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in index.php in Maian Gallery 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, but confirmed by the vendor, stating "this problem existed only briefly in v1.0."
0
Attacker Value
Unknown

CVE-2007-0848

Disclosure Date: February 08, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in classes/class_mail.inc.php in Maian Recipe 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter.
0
Attacker Value
Unknown

CVE-2006-1341

Disclosure Date: March 21, 2006 (last updated February 22, 2025)
SQL injection vulnerability in events.php in Maian Events 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) month and (2) year parameters.
0
Attacker Value
Unknown

CVE-2006-1334

Disclosure Date: March 21, 2006 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in Maian Weblog 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) entry and (2) email parameters to (a) print.php and (b) mail.php.
0