Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
staker vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-4701
SQL injection vulnerability in admin.php in Libera CMS 1.12, when magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the libera_staff_user cookie parameter, a different vector than CVE-2008-4700. NOTE: the provenance of this informat...
Liberiacms Liberia Cms 1.00
Liberiacms Liberia Cms 1.11
Liberiacms Liberia Cms 1.10
Liberiacms Liberia Cms
1 EDB exploit
NA
CVE-2008-6078
SQL injection vulnerability in open.php in the Private Messaging (com_privmsg) component for Limbo CMS allows remote malicious users to execute arbitrary SQL commands via the id parameter in a pms action to index.php.
Limbo Cms Com Privmsg
1 EDB exploit
NA
CVE-2008-6165
SQL injection vulnerability in gestion.php in CSPartner 0.1, when magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the (1) pseudo and (2) passe parameters.
Easy-script Cspartner 0.1
1 EDB exploit
NA
CVE-2008-6167
Directory traversal vulnerability in search.php in miniPortail 2.2 and previous versions allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the lng parameter.
Miniportail Miniportail 2.2
Miniportail Miniportail 2.1
Miniportail Miniportail 2.0
Miniportail Miniportail 1.9
1 EDB exploit
NA
CVE-2008-6257
SQL injection vulnerability in default.asp in Openasp 3.0 and previous versions allows remote malicious users to execute arbitrary SQL commands via the idpage parameter in the pages module.
Openasp Openasp 3.0
1 EDB exploit
NA
CVE-2008-6301
SQL injection vulnerability in shoutbox_view.php in the Small ShoutBox module 1.4 for phpBB allows remote malicious users to execute arbitrary SQL commands via the id parameter in a delete action.
Prezmo Small Shoutbox 1.4
1 EDB exploit
NA
CVE-2008-6308
Multiple directory traversal vulnerabilities in Private Messaging System (PMS) 1.2.3 and previous versions for PunBB allow remote malicious users to include and execute arbitrary files via a .. (dot dot) in the pun_user[language] parameter to (1) functions_navlinks.php, (2) heade...
Punbb Private Messaging System 1.2.2
Punbb Private Messaging System
Punbb Private Messaging System 1.2.1
Punbb Private Messaging System 1.2.0
1 EDB exploit
NA
CVE-2009-2147
SQL injection vulnerability in fdown.php in phpWebThings 1.5.2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Phpwebthings Phpwebthings 1.0
Phpwebthings Phpwebthings 0.3
Phpwebthings Phpwebthings 0.2b
Phpwebthings Phpwebthings 0.2
Phpwebthings Phpwebthings 0.1
Phpwebthings Phpwebthings
Phpwebthings Phpwebthings 1.1a
Phpwebthings Phpwebthings 1.4
Phpwebthings Phpwebthings 0.4.1
Phpwebthings Phpwebthings 0.4
Phpwebthings Phpwebthings 1.4.4
Phpwebthings Phpwebthings 1.5.0
Phpwebthings Phpwebthings 1.5.1
Phpwebthings Phpwebthings 0.4.2
Phpwebthings Phpwebthings 0.6.0
1 EDB exploit
NA
CVE-2009-2176
Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.03a and previous versions, when magic_quotes_gpc is disabled, allow remote malicious users to include and execute arbitrary local files via directory traversal sequences in the (1) list parameter to code/confirm.ph...
Fuzzylime Fuzzylime Cms 3.03a
1 EDB exploit
NA
CVE-2009-2177
code/display.php in fuzzylime (cms) 3.03a and previous versions, when magic_quotes_gpc is disabled, allows remote malicious users to conduct directory traversal attacks and overwrite arbitrary files via a "....//" (dot dot) in the s parameter, which is collapsed into a ...
Fuzzylime Fuzzylime Cms 3.03a
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »