Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
virusman vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2010-0374
Cross-site scripting (XSS) vulnerability in the Marketplace (com_marketplace) component 1.2 for Joomla! allows remote malicious users to inject arbitrary web script or HTML via the catid parameter in a show_category action to index.php.
Codingfish Com Marketplace 1.2
1 EDB exploit
5
CVSSv2
CVE-2008-0135
Snitz Forums 2000 3.4.06 and previous versions stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for forum/snitz_forums_2000.mdb.
Snitz Communications Snitz Forums 2000 3.4.02
Snitz Communications Snitz Forums 2000 3.3
Snitz Communications Snitz Forums 2000 3.0
Snitz Communications Snitz Forums 2000 3.4.05
Snitz Communications Snitz Forums 2000 3.3.03
Snitz Communications Snitz Forums 2000 3.3.01
Snitz Communications Snitz Forums 2000
Snitz Communications Snitz Forums 2000 3.4.04
Snitz Communications Snitz Forums 2000 3.4.03
Snitz Communications Snitz Forums 2000 3.1
Snitz Communications Snitz Forums 2000 3.3.02
Snitz Communications Snitz Forums 2000 3.2.03
1 EDB exploit
7.5
CVSSv2
CVE-2010-0680
Directory traversal vulnerability in index.php in ZeusCMS 0.2 allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the page parameter.
Zeuscms Zeuscms 0.2
1 EDB exploit
5
CVSSv2
CVE-2010-0681
ZeusCMS 0.2 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to obtain sensitive information via a direct request for admin/backup.sql.
Zeuscms Zeuscms 0.2
1 EDB exploit
6.8
CVSSv2
CVE-2010-0707
Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote malicious users to hijack the authentication of an administrator for requests that create new administrative users. NOTE: some of these details are obtained from thir...
Timeclock-software Employee Timeclock Software 0.99
1 EDB exploit
5
CVSSv2
CVE-2010-0939
Visialis ABB Forum 1.1 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for fpdb/abb.mdb.
Visialis Abb Forum 1.1
1 EDB exploit
6.8
CVSSv2
CVE-2010-1077
Directory traversal vulnerability in vbseo.php in Crawlability vBSEO plugin 3.1.0 for vBulletin allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the vbseourl parameter.
Vbseo Vbseo 3.1.0
1 EDB exploit
5
CVSSv2
CVE-2010-0765
fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for _database/forumFips.mdb.
Fipsasp Fipsforum 2.6
1 EDB exploit
7.5
CVSSv2
CVE-2009-4583
SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote malicious users to execute arbitrary SQL commands via the id parameter in a grouplist action to index.php.
Joomla Com Dhforum
1 EDB exploit
5
CVSSv2
CVE-2010-1067
E-membres 1.0 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for db/bdEMembres.mdb.
Hasmir Alic E-membres 1.0
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »