Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
doz vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2007-5370
Multiple cross-site scripting (XSS) vulnerabilities in cgi-bin/dnewsweb.exe in NetWin DNewsWeb (DNews News Server) 57e1 allow remote malicious users to inject arbitrary web script or HTML via the (1) group or (2) utag parameter.
Netwin Dnewsweb 57e1
1 EDB exploit
10
CVSSv2
CVE-2006-6861
Multiple SQL injection vulnerabilities in Outfront Spooky Login 2.7 allow remote malicious users to execute arbitrary SQL commands via (1) the UserUpdate parameter to login/register.asp or (2) unspecified parameters to includes/a_register.asp.
Outfront Spooky Login 2.7
1 EDB exploit
7.5
CVSSv2
CVE-2007-3323
SQL injection vulnerability in comersus_optReviewReadExec.asp in Comersus Shop Cart 7.07 allows remote malicious users to execute arbitrary SQL commands via the idProduct parameter. NOTE: this might be the same as CVE-2005-2190.2.
Comersus Open Technologies Comersus Cart 7.07
1 EDB exploit
4.3
CVSSv2
CVE-2007-5725
Multiple cross-site scripting (XSS) vulnerabilities in Smart-Shop allow remote malicious users to inject arbitrary web script or HTML via (1) the email parameter to index.php; or the command parameter to index.php in (2) the default action for the home page, (3) a currencies acti...
Smart-shop Smart-shop
1 EDB exploit
4.3
CVSSv2
CVE-2008-0436
Cross-site scripting (XSS) vulnerability in profile-upload/upload.asp in PD9 Software MegaBBS 1.5.14b allows remote malicious users to inject arbitrary web script or HTML via the target parameter.
Pd9 Software Megabbs 1.5.14b
1 EDB exploit
7.5
CVSSv2
CVE-2007-6375
Multiple SQL injection vulnerabilities in Bitweaver 2.0.0 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) sort_mode parameter to wiki/list_pages.php and the (2) highlight parameter to search/index.php. NOTE: the researcher also rep...
Bitweaver Bitweaver 1.3.1
Bitweaver Bitweaver
Bitweaver Bitweaver 1.1.1 Beta
Bitweaver Bitweaver 1.2.1
Bitweaver Bitweaver 1.3
1 EDB exploit
4.3
CVSSv2
CVE-2007-5724
Multiple cross-site scripting (XSS) vulnerabilities in Omnistar Live allow remote malicious users to inject arbitrary web script or HTML via (1) the category_id parameter to users/kb.php, and possibly (3) the Email Box field in profile.php.
Omnistar Interactive Omnistar Live
1 EDB exploit
4.3
CVSSv2
CVE-2008-4742
Multiple cross-site scripting (XSS) vulnerabilities in interface/Login.php in TimeTrex 2.2.11 allow remote malicious users to inject arbitrary web script or HTML via the (1) password and (2) user_name parameters.
Timetrex Timetrex 2.2.11
1 EDB exploit
6.8
CVSSv2
CVE-2007-0567
Cross-site scripting (XSS) vulnerability in admin.php in Interactive-Scripts.Com PHP Membership Manager 1.5 allows remote malicious users to inject arbitrary web script or HTML via the _p parameter.
Interactive-scripts.com Php Membership Manager 1.5
1 EDB exploit
4.3
CVSSv2
CVE-2007-6136
Multiple cross-site scripting (XSS) vulnerabilities in index.php in M2Scripts MySpace Scripts Poll Creator allow remote malicious users to inject arbitrary web script or HTML via the (1) title, (2) intro, and (3) question parameters, and (4) unspecified answer parameters, in a cr...
M2scripts My Space Scripts Poll Creator 0
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »