Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2009-4552
Disclosure Date: January 04, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.
0
Attacker Value
Unknown
CVE-2009-4551
Disclosure Date: January 04, 2010 (last updated October 04, 2023)
SQL injection vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a results action to index.php.
0
Attacker Value
Unknown
CVE-2009-3419
Disclosure Date: September 25, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in the Publisher module 2.0 for Miniweb allows remote attackers to execute arbitrary SQL commands via the historymonth parameter.
0
Attacker Value
Unknown
CVE-2009-3420
Disclosure Date: September 25, 2009 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in index.php in the Publisher module 2.0 for Miniweb allow remote attackers to inject arbitrary web script or HTML via the (1) begin parameter and the (2) PATH_INFO.
0
Attacker Value
Unknown
CVE-2008-6582
Disclosure Date: April 02, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.
0