Show filters
75 Total Results
Displaying 61-70 of 75
Sort by:
Attacker Value
Unknown
CVE-2017-14077
Disclosure Date: November 18, 2017 (last updated November 26, 2024)
HTML Injection in Securimage 3.6.4 and earlier allows remote attackers to inject arbitrary HTML into an e-mail message body via the $_SERVER['HTTP_USER_AGENT'] parameter to example_form.ajax.php or example_form.php.
0
Attacker Value
Unknown
CVE-2015-6250
Disclosure Date: September 06, 2017 (last updated November 26, 2024)
simple-php-captcha before commit 9d65a945029c7be7bb6bc893759e74c5636be694 allows remote attackers to automatically generate the captcha response by running the same code on the client-side.
0
Attacker Value
Unknown
CVE-2015-2061
Disclosure Date: March 09, 2015 (last updated October 05, 2023)
Heap-based buffer overflow in the browser plugin for PTC Creo View allows remote attackers to execute arbitrary code via vectors involving setting a large buffer to an unspecified attribute.
0
Attacker Value
Unknown
CVE-2014-9267
Disclosure Date: December 08, 2014 (last updated October 05, 2023)
Heap-based buffer overflow in the PTC IsoView ActiveX control allows remote attackers to execute arbitrary code via a crafted ViewPort property value.
0
Attacker Value
Unknown
CVE-2014-5190
Disclosure Date: August 07, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in captcha-secureimage/test/index.php in the SI CAPTCHA Anti-Spam plugin 2.7.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.
0
Attacker Value
Unknown
CVE-2011-5108
Disclosure Date: August 23, 2012 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in config.php in AdaptCMS 2.0.0 and 2.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2012-2943
Disclosure Date: May 27, 2012 (last updated October 04, 2023)
CRLF injection vulnerability in cryptographp.inc.php in Cryptographp allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the cfg parameter.
0
Attacker Value
Unknown
CVE-2011-3720
Disclosure Date: September 23, 2011 (last updated October 04, 2023)
conceptcms 5.3.1, 5.3.3, and possibly other versions allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by sys_libs/umlib/um_authserver.inc.php and certain other files.
0
Attacker Value
Unknown
CVE-2011-3698
Disclosure Date: September 23, 2011 (last updated October 04, 2023)
AdaptCMS 2.0.2 Beta allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by inc/poll_vote.php and certain other files.
0
Attacker Value
Unknown
CVE-2011-0516
Disclosure Date: January 20, 2011 (last updated October 04, 2023)
SQL injection vulnerability in mainx_a.php in E-PROMPT C BetMore Site Suite 4.0 through 4.2.0 allows remote attackers to execute arbitrary SQL commands via the bid parameter.
0