Show filters
53 Total Results
Displaying 51-53 of 53
Sort by:
Attacker Value
Unknown

CVE-2008-5863

Disclosure Date: January 06, 2009 (last updated October 04, 2023)
SQL injection vulnerability in locator.php in the Userlocator module 3.0 for Woltlab Burning Board (wBB) allows remote attackers to execute arbitrary SQL commands via the y parameter in a get_user action.
0
Attacker Value
Unknown

CVE-2008-0819

Disclosure Date: February 19, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in index.php in PlutoStatus Locator 1.0 pre alpha allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.
0
Attacker Value
Unknown

CVE-2025-26974

Last updated February 25, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPExperts.io WP Multi Store Locator allows Blind SQL Injection. This issue affects WP Multi Store Locator: from n/a through 2.5.1.
0