Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
injector5 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2009-2567
SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 5.6.2 for Joomla! allows remote malicious users to execute arbitrary SQL commands via the id parameter to index.php.
Almondsoft Almond Classifieds 5.6.2
1 EDB exploit
NA
CVE-2009-2770
PowerUpload 2.4 allows remote malicious users to bypass authentication and gain administrative access via a MIME encoded value of admin for the myadminname cookie.
Powerupload Powerupload 2.4
1 EDB exploit
NA
CVE-2008-2113
SQL injection vulnerability in annuaire.php in PHPEasyData 1.5.4 allows remote malicious users to execute arbitrary SQL commands via the cat_id parameter.
Phpeasydata Phpeasydata 1.5.4
1 EDB exploit
NA
CVE-2008-2124
SQL injection vulnerability in modules/print.asp in fipsASP fipsCMS allows remote malicious users to execute arbitrary SQL commands via the lg parameter.
Fipsasp Fipscms 2.1
1 EDB exploit
NA
CVE-2008-2132
SQL injection vulnerability in step1.asp in Systementor PostcardMentor allows remote malicious users to execute arbitrary SQL commands via the cat_fldAuto parameter.
Systementor Postcardmentor
1 EDB exploit
NA
CVE-2008-2177
Multiple SQL injection vulnerabilities in phpDirectorySource 1.1.06, when magic_quotes_gpc is disabled, allow remote malicious users to execute arbitrary SQL commands via the (1) lid parameter to show.php and the (2) login parameter to admin.php.
Php Directory Source Phpdirectorysource 1.1.06
1 EDB exploit
NA
CVE-2008-2180
Multiple SQL injection vulnerabilities in cpLinks 1.03, when magic_quotes_gpc is disabled, allow remote malicious users to execute arbitrary SQL commands via the (1) admin_username parameter (aka the username field) to admin/index.php and the (2) search_text and (3) search_catego...
Cplinks Cplinks 1.03
1 EDB exploit
NA
CVE-2008-2181
Multiple cross-site scripting (XSS) vulnerabilities in search.php in cpLinks 1.03 allow remote malicious users to inject arbitrary web script or HTML via the (1) search_text and (2) search_category parameters. NOTE: the XSS reportedly occurs in a forced SQL error message. NOTE: s...
Cplinks Cplinks 1.03
1 EDB exploit
NA
CVE-2008-2225
SQL injection vulnerability in index.php in gameCMS Lite 1.0 allows remote malicious users to execute arbitrary SQL commands via the systemId parameter.
Gamecms Gamecms Lite 1.0
1 EDB exploit
NA
CVE-2008-2453
Multiple SQL injection vulnerabilities in PHP Classifieds Script allow remote malicious users to execute arbitrary SQL commands via the fatherID parameter to (1) browse.php and (2) search.php.
Phpclassifiedsscript Php Classifieds Script
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
NEXT »