Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
condemned vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-5604
Directory traversal vulnerability in index.php in My Simple Forum 3.0 and 4.1, when magic_quotes_gpc is disabled, allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the action parameter.
Drennansoft My Simple Forum 3.0
Drennansoft My Simple Forum 4.1
1 EDB exploit
NA
CVE-2008-5287
SQL injection vulnerability in catagorie.php in Werner Hilversum FAQ Manager 1.2 allows remote malicious users to execute arbitrary SQL commands via the cat_id parameter.
Scripts4you Faq Manager 1.2
1 EDB exploit
NA
CVE-2008-1509
SQL injection vulnerability in index.php in XLPortal 2.2.4 and previous versions allows remote malicious users to execute arbitrary SQL commands via the query parameter.
Xlportal Xlportal
1 EDB exploit
NA
CVE-2008-2896
Directory traversal vulnerability in index.php in FireAnt 1.3 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the page parameter.
Getfireant Fireant 1.3
1 EDB exploit
NA
CVE-2008-4913
Directory traversal vulnerability in admin.php in LokiCMS 0.3.3 and previous versions allows remote malicious users to delete arbitrary files via a .. (dot dot) in the delete parameter.
Lokicms Lokicms 0.1.0
Lokicms Lokicms
Lokicms Lokicms 0.3.2b1
Lokicms Lokicms 0.3.1b2
Lokicms Lokicms 0.2.0
Lokicms Lokicms 0.1.0rc1
Lokicms Lokicms 0.3.1b1
Lokicms Lokicms 0.3.0
1 EDB exploit
NA
CVE-2008-2129
SQL injection vulnerability in index.php in Galleristic 1.0, when magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the cat parameter.
Cine Galleristic 1.0
1 EDB exploit
NA
CVE-2009-1853
Multiple SQL injection vulnerabilities in index.php in Kensei Board 2.0 BETA (aka 2.0.0b) and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) f and (2) t parameters in a showforum action.
Kenseiboard Kensei Board 1.1.0
Kenseiboard Kensei Board
1 EDB exploit
NA
CVE-2008-3848
SQL injection vulnerability in single.php in Z-Breaknews 2.0 allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Pdesigner Z-breaknews 2.0
1 EDB exploit
NA
CVE-2008-1607
SQL injection vulnerability in haberoku.php in Serbay Arslanhan Bomba Haber 2.0 allows remote malicious users to execute arbitrary SQL commands via the haber parameter.
Serby Arslanhan Bomba Haber 2.0
1 EDB exploit
NA
CVE-2008-3588
Multiple SQL injection vulnerabilities in phsBlog 0.1.1 allow remote malicious users to execute arbitrary SQL commands via the (1) eid parameter to comments.php, (2) cid parameter to index.php, and the (3) urltitle parameter to entries.php.
Phsblog Phsblog 0.1.1
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »