Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alphanix vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-5767
SQL injection vulnerability in authors.asp in gNews Publisher allows remote malicious users to execute arbitrary SQL commands via the authorID parameter.
Gazatem Gnews Publisher Nil
1 EDB exploit
NA
CVE-2008-5772
Multiple SQL injection vulnerabilities in ASPSiteWare RealtyListings 1.0 and 2.0 allow remote malicious users to execute arbitrary SQL commands via the (1) iType parameter to type.asp and the (2) iPro parameter to detail.asp.
Aspsiteware Realtylistings 1.0
Aspsiteware Realtylistings 2.0
1 EDB exploit
NA
CVE-2008-5774
Multiple SQL injection vulnerabilities in ASPSiteWare HomeBuilder 1.0 and 2.0 allow remote malicious users to execute arbitrary SQL commands via the (1) iType parameter to (a) type.asp and (b) type2.asp and the (2) iPro parameter to (c) detail.asp.
Aspsiteware Homebuilder 1.0
Aspsiteware Homebuilder 2.0
1 EDB exploit
NA
CVE-2008-6355
The Net Guys ASPired2Protect stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database containing the username and password via a direct request to ASPired2Protect.mdb.
Thenetguys Aspired2protect -
1 EDB exploit
NA
CVE-2008-6321
CF Shopkart 5.2.2 stores cfshopkart52.mdb under the web root with insufficient access control, which allows remote malicious users to obtain sensitive information, such as usernames and passwords, via a direct request.
Cfshopkart Cf Shopkart 5.2.2
1 EDB exploit
NA
CVE-2008-6323
SQL injection vulnerability in forummessages.cfm in CFMSource CF_Auction allows remote malicious users to execute arbitrary SQL commands via the categorynbr parameter.
Cfmsource Cf Auction -
1 EDB exploit
NA
CVE-2008-5972
SQL injection vulnerability in default.asp in Active Business Directory 2 allows remote malicious users to execute arbitrary SQL commands via the catid parameter.
Activewebsoftwares Active Business Directory 2
1 EDB exploit
NA
CVE-2008-5981
PacPoll 4.0 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for (1) poll.mdb or (2) poll97.mdb.
Pacosdrivers Pacpoll 4.0
1 EDB exploit
NA
CVE-2008-5888
Multiple SQL injection vulnerabilities in Click&Rank allow remote malicious users to execute arbitrary SQL commands via the id parameter to (1) hitcounter.asp, (2) user_delete.asp, and (3) user_update.asp; (4) the userid parameter to admin_login.asp (aka the USERNAME field in...
Icash Click&rank Nil
1 EDB exploit
NA
CVE-2008-5589
SQL injection vulnerability in processlogin.asp in Katy Whitton RankEm allows remote malicious users to execute arbitrary SQL commands via the (1) txtusername parameter (aka username field) or the (2) txtpassword parameter (aka password field). NOTE: some of these details are obt...
Katywhitton Rankem
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2018-25103
CVE-2024-36279
CVE-2024-38457
elevation of privilege
CVE-2024-27801
CVE-2024-30103
NULL pointer dereference
CVE-2024-6057
XML injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »