Show filters
76 Total Results
Displaying 61-70 of 76
Sort by:
Attacker Value
Unknown

CVE-2009-1591

Disclosure Date: May 08, 2009 (last updated October 04, 2023)
CRLF injection vulnerability in CGI RESCUE Web Mailer before 1.04 allows remote attackers to inject arbitrary HTTP headers, and conduct cross-site scripting (XSS) or HTTP response splitting attacks, via CRLF sequences in an unspecified web form.
0
Attacker Value
Unknown

CVE-2008-1604

Disclosure Date: April 01, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in PerlMailer before 3.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-6138

Disclosure Date: November 27, 2007 (last updated October 04, 2023)
SQL injection vulnerability in redir.asp in VU Mass Mailer allows remote attackers to execute arbitrary SQL commands via the password parameter to Default.asp (aka the Login Page). NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2007-3215

Disclosure Date: June 14, 2007 (last updated October 04, 2023)
PHPMailer 1.7, when configured to use sendmail, allows remote attackers to execute arbitrary shell commands via shell metacharacters in the SendmailSend function in class.phpmailer.php.
0
Attacker Value
Unknown

CVE-2007-1425

Disclosure Date: March 13, 2007 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Triexa SonicMailer Pro 3.2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the list parameter in an archive action.
0
Attacker Value
Unknown

CVE-2007-0350

Disclosure Date: January 19, 2007 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in (a) index.php and (b) dl.php in SmE FileMailer 1.21 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ps, (2) us, (3) f, or (4) code parameter. NOTE: the us vector in index.php is already covered by CVE-2007-0346.
0
Attacker Value
Unknown

CVE-2007-0346

Disclosure Date: January 18, 2007 (last updated October 04, 2023)
SQL injection vulnerability in index.php in SmE FileMailer 1.21 allows remote attackers to execute arbitrary SQL commands via the us parameter.
0
Attacker Value
Unknown

CVE-2007-0339

Disclosure Date: January 18, 2007 (last updated October 04, 2023)
SQL injection vulnerability in index.php (aka the login form) in Scriptme SMe FileMailer 1.21 allows remote attackers to execute arbitrary SQL commands via the Password field (ps parameter). NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2006-3111

Disclosure Date: June 21, 2006 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in main.php in Chipmailer 1.09 allow remote attackers to execute arbitrary SQL commands via multiple parameters, as demonstrated by (1) anfang, (2) name, (3) mail, (4) anrede, (5) vorname, (6) nachname, (7) gebtag, (8) gebmonat, and (9) gebjahr.
0
Attacker Value
Unknown

CVE-2006-3112

Disclosure Date: June 21, 2006 (last updated October 04, 2023)
Chipmailer 1.09 allows remote attackers to obtain sensitive information via a direct request to php.php, which displays the output of the phpinfo function.
0