Show filters
469 Total Results
Displaying 421-430 of 469
Sort by:
Attacker Value
Unknown
CVE-2009-1496
Disclosure Date: May 01, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in the Cmi Marketplace (com_cmimarketplace) component 0.1 for Joomla! allows remote attackers to list arbitrary directories via a .. (dot dot) in the viewit parameter to index.php.
0
Attacker Value
Unknown
CVE-2008-6219
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
nsrexecd.exe in multiple EMC Networker products including EMC NetWorker Server, Storage Node, and Client 7.3.x and 7.4, 7.4.1, 7.4.2, Client and Storage Node for Open VMS 7.3.2 ECO6 and earlier, Module for Microsoft Exchange 5.1 and earlier, Module for Microsoft Applications 2.0 and earlier, Module for Meditech 2.0 and earlier, and PowerSnap 2.4 SP1 and earlier does not properly control the allocation of memory, which allows remote attackers to cause a denial of service (memory exhaustion) via multiple crafted RPC requests.
0
Attacker Value
Unknown
CVE-2008-5655
Disclosure Date: December 17, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in MyioSoft EasyBookMarker 4.0 allow remote attackers to execute arbitrary SQL commands via the (1) delete_folder and (2) delete_link parameters to unspecified vectors, possibly to (a) plugins/bookmarker/bookmarker_backend.php or (b) ajaxp.php, different vectors than CVE-2008-5654. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2008-5651
Disclosure Date: December 17, 2008 (last updated October 04, 2023)
SQL injection vulnerability in plugins/bookmarker/bookmarker_backend.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute arbitrary SQL commands via the Parent parameter.
0
Attacker Value
Unknown
CVE-2008-5652
Disclosure Date: December 17, 2008 (last updated October 04, 2023)
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute arbitrary SQL commands via the rsargs parameter, as reachable through the username parameter. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-5574
Disclosure Date: December 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in member.php in Webmaster Marketplace allows remote attackers to execute arbitrary SQL commands via the u parameter.
0
Attacker Value
Unknown
CVE-2008-4458
Disclosure Date: October 07, 2008 (last updated October 04, 2023)
SQL injection vulnerability in listings.php in E-Php B2B Trading Marketplace Script allows remote attackers to execute arbitrary SQL commands via the cid parameter in a product action.
0
Attacker Value
Unknown
CVE-2008-4056
Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in admin/login.php in Matterdaddy Market 1.1 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2008-3783
Disclosure Date: August 26, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in index.php in Matterdaddy Market 1.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) category and (2) type parameters.
0
Attacker Value
Unknown
CVE-2008-3756
Disclosure Date: August 21, 2008 (last updated October 04, 2023)
SQL injection vulnerability in tr.php in YourFreeWorld Viral Marketing Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
0