Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2009-4552

Disclosure Date: January 04, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.
0
Attacker Value
Unknown

CVE-2009-4551

Disclosure Date: January 04, 2010 (last updated October 04, 2023)
SQL injection vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a results action to index.php.
0
Attacker Value
Unknown

CVE-2009-3419

Disclosure Date: September 25, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in the Publisher module 2.0 for Miniweb allows remote attackers to execute arbitrary SQL commands via the historymonth parameter.
0
Attacker Value
Unknown

CVE-2009-3420

Disclosure Date: September 25, 2009 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in index.php in the Publisher module 2.0 for Miniweb allow remote attackers to inject arbitrary web script or HTML via the (1) begin parameter and the (2) PATH_INFO.
0
Attacker Value
Unknown

CVE-2008-6582

Disclosure Date: April 02, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.
0