Show filters
34 Total Results
Displaying 1-10 of 34
Sort by:
Attacker Value
Unknown
CVE-2010-4855
Disclosure Date: October 05, 2011 (last updated October 04, 2023)
SQL injection vulnerability in oku.asp in xWeblog 2.2 allows remote attackers to execute arbitrary SQL commands via the makale_id parameter.
0
Attacker Value
Unknown
CVE-2010-4856
Disclosure Date: October 05, 2011 (last updated October 04, 2023)
SQL injection vulnerability in arsiv.asp in xWeblog 2.2 allows remote attackers to execute arbitrary SQL commands via the tarih parameter.
0
Attacker Value
Unknown
CVE-2010-4144
Disclosure Date: November 02, 2010 (last updated October 04, 2023)
SQL injection vulnerability in radyo.asp in Kisisel Radyo Script allows remote attackers to execute arbitrary SQL commands via the Id parameter.
0
Attacker Value
Unknown
CVE-2010-4145
Disclosure Date: November 02, 2010 (last updated October 04, 2023)
Kisisel Radyo Script stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for sevvo/eco23.mdb.
0
Attacker Value
Unknown
CVE-2010-1736
Disclosure Date: May 06, 2010 (last updated October 04, 2023)
KrM Haber 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for d_atabase/Krmdb.mdb.
0
Attacker Value
Unknown
CVE-2009-4820
Disclosure Date: April 27, 2010 (last updated October 04, 2023)
Angelo-Emlak 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for veribaze/angelo.mdb.
0
Attacker Value
Unknown
CVE-2010-1116
Disclosure Date: March 25, 2010 (last updated October 04, 2023)
LookMer Music Portal stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for dbmdb/LookMerSarkiMDB.mdb.
0
Attacker Value
Unknown
CVE-2010-1064
Disclosure Date: March 23, 2010 (last updated October 04, 2023)
Erolife AjxGaleri VT stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/ajxgaleri.mdb.
0
Attacker Value
Unknown
CVE-2009-4585
Disclosure Date: January 06, 2010 (last updated October 04, 2023)
UranyumSoft Listing Service stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/db.mdb.
0
Attacker Value
Unknown
CVE-2008-6641
Disclosure Date: April 07, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Shader TV (Beta) allow remote authenticated administrators to execute arbitrary SQL commands via the sid parameter to (1) kanal.asp, (2) google.asp, and (3) hakk.asp in yonet/; and allow remote attackers to execute arbitrary SQL commands via the (4) username or (5) password fields to yonet/default.asp.
0