Show filters
34 Total Results
Displaying 1-10 of 34
Sort by:
Attacker Value
Unknown

CVE-2010-4855

Disclosure Date: October 05, 2011 (last updated October 04, 2023)
SQL injection vulnerability in oku.asp in xWeblog 2.2 allows remote attackers to execute arbitrary SQL commands via the makale_id parameter.
0
Attacker Value
Unknown

CVE-2010-4856

Disclosure Date: October 05, 2011 (last updated October 04, 2023)
SQL injection vulnerability in arsiv.asp in xWeblog 2.2 allows remote attackers to execute arbitrary SQL commands via the tarih parameter.
0
Attacker Value
Unknown

CVE-2010-4144

Disclosure Date: November 02, 2010 (last updated October 04, 2023)
SQL injection vulnerability in radyo.asp in Kisisel Radyo Script allows remote attackers to execute arbitrary SQL commands via the Id parameter.
0
Attacker Value
Unknown

CVE-2010-4145

Disclosure Date: November 02, 2010 (last updated October 04, 2023)
Kisisel Radyo Script stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for sevvo/eco23.mdb.
0
Attacker Value
Unknown

CVE-2010-1736

Disclosure Date: May 06, 2010 (last updated October 04, 2023)
KrM Haber 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for d_atabase/Krmdb.mdb.
0
Attacker Value
Unknown

CVE-2009-4820

Disclosure Date: April 27, 2010 (last updated October 04, 2023)
Angelo-Emlak 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for veribaze/angelo.mdb.
0
Attacker Value
Unknown

CVE-2010-1116

Disclosure Date: March 25, 2010 (last updated October 04, 2023)
LookMer Music Portal stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for dbmdb/LookMerSarkiMDB.mdb.
0
Attacker Value
Unknown

CVE-2010-1064

Disclosure Date: March 23, 2010 (last updated October 04, 2023)
Erolife AjxGaleri VT stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/ajxgaleri.mdb.
0
Attacker Value
Unknown

CVE-2009-4585

Disclosure Date: January 06, 2010 (last updated October 04, 2023)
UranyumSoft Listing Service stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/db.mdb.
0
Attacker Value
Unknown

CVE-2008-6641

Disclosure Date: April 07, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Shader TV (Beta) allow remote authenticated administrators to execute arbitrary SQL commands via the sid parameter to (1) kanal.asp, (2) google.asp, and (3) hakk.asp in yonet/; and allow remote attackers to execute arbitrary SQL commands via the (4) username or (5) password fields to yonet/default.asp.
0