Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
omnipresent vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-2499
SQL injection vulnerability in default.asp in CodeAvalanche News (CANews) 1.2 allows remote malicious users to execute arbitrary SQL commands via the password field.
Xfairguy Codeavalanche News 1.2
1 EDB exploit
NA
CVE-2006-3568
Multiple cross-site scripting (XSS) vulnerabilities in guestbook.php in Fantastic Guestbook 2.0.1, and possibly earlier versions, allow remote malicious users to inject arbitrary web script or HTML via the (1) first_name, (2) last_name, or (3) nickname parameters.
Fantastic Guestbook Project Fantastic Guestbook 2.0.1
1 EDB exploit
NA
CVE-2006-2771
admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which allows remote malicious users to delete arbitrary posts via a modified delID parameter.
Hogstorps Hogstorp Guestbook 2.0
1 EDB exploit
NA
CVE-2006-4122
Simple one-file guestbook 1.0 and previous versions allows remote malicious users to bypass authentication and delete guestbook entries via a modified id parameter to guestbook.php.
Simple One-file Guestbook Simple One-file Guestbook
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started