Show filters
18 Total Results
Displaying 1-10 of 18
Sort by:
Attacker Value
Unknown
CVE-2013-3256
Disclosure Date: August 08, 2013 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the Shareaholic SexyBookmarks plugin 6.1.4.0 for WordPress allows remote attackers to hijack the authentication of users for requests that "manipulate plugin settings."
0
Attacker Value
Unknown
CVE-2010-4915
Disclosure Date: October 08, 2011 (last updated October 04, 2023)
SQL injection vulnerability in index.cfm in ColdGen ColdBookmarks 1.22 allows remote attackers to execute arbitrary SQL commands via the BookmarkID parameter in an EditBookmark action.
0
Attacker Value
Unknown
CVE-2008-6410
Disclosure Date: March 06, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in show.php in ol'bookmarks manager 0.7.5 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter.
0
Attacker Value
Unknown
CVE-2008-6407
Disclosure Date: March 06, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the framefile parameter.
0
Attacker Value
Unknown
CVE-2008-6409
Disclosure Date: March 06, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary SQL commands via the id parameter in a brain action.
0
Attacker Value
Unknown
CVE-2008-6408
Disclosure Date: March 06, 2009 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary PHP code via a URL in the framefile parameter.
0
Attacker Value
Unknown
CVE-2008-6007
Disclosure Date: January 30, 2009 (last updated October 04, 2023)
SQL injection vulnerability in view_group.php in QuidaScript BookMarks Favourites Script (APB) allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown
CVE-2008-3748
Disclosure Date: August 21, 2008 (last updated October 04, 2023)
SQL injection vulnerability in view_group.php in Active PHP Bookmarks (APB) 1.1.02 and 1.2.06 allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown
CVE-2007-2817
Disclosure Date: May 22, 2007 (last updated October 04, 2023)
SQL injection vulnerability in read/index.php in ol'bookmarks 0.7.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown
CVE-2007-2816
Disclosure Date: May 22, 2007 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in ol'bookmarks 0.7.4 allow remote attackers to execute arbitrary PHP code via a URL in the root parameter to (1) test1.php, (2) blackorange.php, (3) default.php, (4) frames1.php, (5) frames1_top.php, (7) test2.php, (8) test3.php, (9) test4.php, (10) test5.php, (11) test6.php, (12) frames1_left.php, and (13) frames1_center.php in themes/.
0