Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2008-5979

Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Mailing List Manager Gold allows remote attackers to inject arbitrary web script or HTML via the Email parameter.
0
Attacker Value
Unknown

CVE-2008-5978

Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Ocean12 Mailing List Manager Gold allow remote attackers to execute arbitrary SQL commands via the Email parameter to (1) default.asp and (2) s_edit.asp.
0
Attacker Value
Unknown

CVE-2008-5980

Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Ocean12 Mailing List Manager Gold stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for o12mail.mdb.
0