Show filters
100 Total Results
Displaying 81-90 of 100
Sort by:
Attacker Value
Unknown
CVE-2008-1273
Disclosure Date: March 10, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in imageVue 1.7 allow remote attackers to inject arbitrary web script or HTML via the path parameter to (1) popup.php, (2) test/dir2.php, (3) admin/upload.php, and (4) dirxml.php in upload/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2007-6168
Disclosure Date: November 29, 2007 (last updated October 04, 2023)
SQL injection vulnerability in default.asp in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the username parameter, a different vector than CVE-2007-6143. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2007-6143
Disclosure Date: November 27, 2007 (last updated October 04, 2023)
SQL injection vulnerability in default.asp (aka the Login Page) in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the password parameter.
0
Attacker Value
Unknown
CVE-2007-6138
Disclosure Date: November 27, 2007 (last updated October 04, 2023)
SQL injection vulnerability in redir.asp in VU Mass Mailer allows remote attackers to execute arbitrary SQL commands via the password parameter to Default.asp (aka the Login Page). NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2007-0591
Disclosure Date: January 30, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in configure.php in Vu Le An Virtual Path (VirtualPath) 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
0
Attacker Value
Unknown
CVE-2006-6251
Disclosure Date: December 04, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in VUPlayer 2.44 and earlier allows remote attackers to execute arbitrary code via a long string in an M3U file, aka an "M3U UNC Name" attack.
0
Attacker Value
Unknown
CVE-2006-6230
Disclosure Date: December 02, 2006 (last updated October 04, 2023)
SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a register action to index.php, a different vulnerability than CVE-2006-0962.
0
Attacker Value
Unknown
CVE-2006-6231
Disclosure Date: December 02, 2006 (last updated October 04, 2023)
vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php, which leaks the path in an error message.
0
Attacker Value
Unknown
CVE-2006-0962
Disclosure Date: March 02, 2006 (last updated February 22, 2025)
SQL injection vulnerability in vuBB 0.2 allows remote attackers to execute arbitrary SQL commands via the pass parameter in a cookie.
0
Attacker Value
Unknown
CVE-2006-0700
Disclosure Date: February 15, 2006 (last updated February 22, 2025)
imageVue 16.1 allows remote attackers to obtain folder permission settings via a direct request to dir.php, which returns an XML document that lists folders and their permissions.
0