Show filters
290 Total Results
Displaying 61-70 of 290
Sort by:
Attacker Value
Unknown

CVE-2018-7409

Disclosure Date: February 22, 2018 (last updated November 26, 2024)
In unixODBC before 2.3.5, there is a buffer overflow in the unicode_to_ansi_copy() function in DriverManager/__info.c.
0
Attacker Value
Unknown

CVE-2018-5697

Disclosure Date: January 14, 2018 (last updated November 26, 2024)
Icy Phoenix 2.2.0.105 allows SQL injection via an unapprove request to admin_kb_art.php or the order parameter to admin_jr_admin.php, related to functions_kb.php.
0
Attacker Value
Unknown

CVE-2017-17431

Disclosure Date: December 05, 2017 (last updated November 26, 2024)
GeniXCMS 1.1.5 has XSS via the from, id, lang, menuid, mod, q, status, term, to, or token parameter. NOTE: this might overlap CVE-2017-14761, CVE-2017-14762, or CVE-2017-14765.
0
Attacker Value
Unknown

CVE-2017-1000163

Disclosure Date: November 17, 2017 (last updated November 26, 2024)
The Phoenix Framework versions 1.0.0 through 1.0.4, 1.1.0 through 1.1.6, 1.2.0, 1.2.2 and 1.3.0-rc.0 are vulnerable to unvalidated URL redirection, which may result in phishing or social engineering attacks.
0
Attacker Value
Unknown

CVE-2015-3933

Disclosure Date: November 08, 2017 (last updated November 26, 2024)
Multiple SQL injection vulnerabilities in inc/lib/User.class.php in MetalGenix GeniXCMS before 0.0.3-patch allow remote attackers to execute arbitrary SQL commands via the (1) email parameter or (2) userid parameter to register.php.
0
Attacker Value
Unknown

CVE-2017-14762

Disclosure Date: September 27, 2017 (last updated November 26, 2024)
In GeniXCMS 1.1.4, /inc/lib/Control/Backend/menus.control.php has XSS via the id parameter.
0
Attacker Value
Unknown

CVE-2017-14761

Disclosure Date: September 27, 2017 (last updated November 26, 2024)
In GeniXCMS 1.1.4, /inc/lib/backend/menus.control.php has XSS via the id parameter.
0
Attacker Value
Unknown

CVE-2017-14765

Disclosure Date: September 27, 2017 (last updated November 26, 2024)
In GeniXCMS 1.1.4, gxadmin/index.php has XSS via the Menu ID field in a page=menus request.
0
Attacker Value
Unknown

CVE-2017-14764

Disclosure Date: September 27, 2017 (last updated November 26, 2024)
In the Upload Modules page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a module.
0
Attacker Value
Unknown

CVE-2017-14763

Disclosure Date: September 27, 2017 (last updated November 26, 2024)
In the Install Themes page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a theme.
0