Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
blind sql injection vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2010-4983
SQL injection vulnerability in profile.php in iScripts CyberMatch 1.0 allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Iscripts Cybermatch 1.0
1 EDB exploit
NA
CVE-2010-3484
SQL injection vulnerability in common.php in LightNEasy 3.2.1 allows remote malicious users to execute arbitrary SQL commands via the handle parameter to LightNEasy.php, a different vector than CVE-2008-6593.
Lightneasy Lightneasy 3.2.1
1 EDB exploit
NA
CVE-2009-4564
SQL injection vulnerability in index.php in Zenphoto 1.2.5, when the ZenPage plugin is enabled, allows remote malicious users to execute arbitrary SQL commands via the category parameter, related to a URI under news/category/.
Zenphoto Zenphoto 1.2.5
1 EDB exploit
NA
CVE-2010-0981
SQL injection vulnerability in the TPJobs (com_tpjobs) component for Joomla! allows remote malicious users to execute arbitrary SQL commands via the id_c[] parameter in a resadvsearch action to index.php.
Templateplazza Com Tpjobs
1 EDB exploit
NA
CVE-2014-5520
SQL injection vulnerability in XRMS CRM, possibly 1.99.2, allows remote malicious users to execute arbitrary SQL commands via the user_id parameter to plugins/webform/new-form.php, which is not properly handled by plugins/useradmin/fingeruser.php.
Xrms Crm Project Xrms Crm 1.99.2
1 EDB exploit
NA
CVE-2014-5521
plugins/useradmin/fingeruser.php in XRMS CRM, possibly 1.99.2, allows remote authenticated users to execute arbitrary code via shell metacharacters in the username parameter.
Xrms Crm Project Xrms Crm 1.99.2
1 EDB exploit
NA
CVE-2011-0510
SQL injection vulnerability in cart.php in Advanced Webhost Billing System (AWBS) 2.9.2 and possibly earlier allows remote malicious users to execute arbitrary SQL commands via the oid parameter in an add_other action.
Awbs Advanced Webhost Billing System 2.3.3
Awbs Advanced Webhost Billing System
Awbs Advanced Webhost Billing System 2.9.0
Awbs Advanced Webhost Billing System 2.7.5
Awbs Advanced Webhost Billing System 2.7.4
Awbs Advanced Webhost Billing System 2.5.1
Awbs Advanced Webhost Billing System 2.5.0
Awbs Advanced Webhost Billing System 2.2.1
Awbs Advanced Webhost Billing System 2.2.0
Awbs Advanced Webhost Billing System 2.0.3
Awbs Advanced Webhost Billing System 2.0.2
Awbs Advanced Webhost Billing System 2.7.1
Awbs Advanced Webhost Billing System 2.7
Awbs Advanced Webhost Billing System 2.8.3
Awbs Advanced Webhost Billing System 2.8.2
Awbs Advanced Webhost Billing System 2.7.0
Awbs Advanced Webhost Billing System 2.6.2
Awbs Advanced Webhost Billing System 2.3.2
Awbs Advanced Webhost Billing System 2.3.1
Awbs Advanced Webhost Billing System 2.1.0
Awbs Advanced Webhost Billing System 2.0.6
Awbs Advanced Webhost Billing System 2.9.1
1 EDB exploit
NA
CVE-2011-1055
SQL injection vulnerability in api/ice_media.cfc in Lingxia I.C.E CMS 1.0 allows remote malicious users to execute arbitrary SQL commands via the session.user_id parameter to media.cfm.
Lingxia273 Lingxia I.c.e Cms 1.0
1 EDB exploit
NA
CVE-2010-4752
SQL injection vulnerability in LightNEasy.php in LightNEasy 3.2.1, when magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the page parameter, a different vector than CVE-2008-6593, CVE-2010-3484, and CVE-2010-3485. NOTE: the provena...
Lightneasy Lightneasy 3.2.1
1 EDB exploit
NA
CVE-2010-4991
SQL injection vulnerability in the NinjaMonials (com_ninjamonials) component for Joomla! allows remote malicious users to execute arbitrary SQL commands via the Itemid parameter in a display action to index.php.
Ninjaforge Ninjamonials
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
7
8
9
10
NEXT »