Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
staker vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-2699
Multiple directory traversal vulnerabilities in Galatolo WebManager (GWM) 1.0 allow remote malicious users to include and execute arbitrary local files via directory traversal sequences in (1) the plugin parameter to admin/plugins.php or (2) the com parameter to index.php.
Gwm Galatolo Webmanager 1.0
1 EDB exploit
NA
CVE-2008-6805
Multiple SQL injection vulnerabilities in Mic_Blog 0.0.3, when magic_quotes_gpc is disabled, allow remote malicious users to execute arbitrary SQL commands via the (1) cat parameter to category.php, the (2) user parameter to login.php, and the (3) site parameter to register.php.
Micgr Mic Blog 0.0.3
1 EDB exploit
NA
CVE-2008-6952
SQL injection vulnerability in Rss.php in MauryCMS 0.53.2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the c parameter.
Cms.maury91 Maurycms 0.53.2
1 EDB exploit
NA
CVE-2008-6787
SQL injection vulnerability in administrator/index.php in Lizardware CMS 0.6.0 and previous versions allows remote malicious users to execute arbitrary SQL commands via the user.
Jeremy Powers Lizardware Cms
Jeremy Powers Lizardware Cms 0.6.0
1 EDB exploit
NA
CVE-2009-4106
Unrestricted file upload vulnerability in admintools/editpage-2.php in Agoko CMS 0.4 and previous versions allows remote malicious users to inject and execute arbitrary PHP code via the filename and text parameters.
Ohloh Agoko Cms
1 EDB exploit
NA
CVE-2008-2876
Directory traversal vulnerability in index.php in mUnky 0.0.1 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the zone parameter.
Munky Munky 0.0.1
1 EDB exploit
NA
CVE-2008-4675
SQL injection vulnerability in index.php in PHPcounter 1.3.2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the name parameter.
Phpcounter Phpcounter 1.3.1
Phpcounter Phpcounter 1.3.0
Phpcounter Phpcounter 1.2.1
Phpcounter Phpcounter 1.2.0
Phpcounter Phpcounter 1.2.5
Phpcounter Phpcounter 1.2.4
Phpcounter Phpcounter 1.2.3
Phpcounter Phpcounter 1.2.2
Phpcounter Phpcounter 1.2.7
Phpcounter Phpcounter 1.2.6
Phpcounter Phpcounter
1 EDB exploit
NA
CVE-2009-1409
SQL injection vulnerability in usersettings.php in e107 0.7.15 and previous versions, when "Extended User Fields" is enabled and magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the hide parameter, a different vector than...
E107 E107 0.7.11
E107 E107 0.7.13
E107 E107 0.553 Beta
E107 E107 0.549 Beta
E107 E107 0.551 Beta
E107 E107 0.6 12
E107 E107 0.6 11
E107 E107 0.603
E107 E107 0.602
E107 E107 0.609
E107 E107 0.610
E107 E107 0.616
E107 E107 0.617
E107 E107 0.7
E107 E107 0.7.3
E107 E107 5.05
E107 E107 5.04
E107 E107 5.3 Beta2
E107 E107 5.4 Beta1
E107 E107 0.7.10
E107 E107 0.554
E107 E107 0.6 15a
1 EDB exploit
NA
CVE-2009-2176
Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.03a and previous versions, when magic_quotes_gpc is disabled, allow remote malicious users to include and execute arbitrary local files via directory traversal sequences in the (1) list parameter to code/confirm.ph...
Fuzzylime Fuzzylime Cms 3.03a
1 EDB exploit
NA
CVE-2008-4700
SQL injection vulnerability in admin.php in Libera CMS 1.12 and previous versions, when magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the libera_staff_pass cookie parameter.
Liberiacms Liberia Cms
Liberiacms Liberia Cms 1.00
Liberiacms Liberia Cms 1.11
Liberiacms Liberia Cms 1.10
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »