Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
aliaksandr hartsuyeu vulnerabilities and exploits
(subscribe to this query)
755
VMScore
CVE-2006-0088
SQL injection vulnerability in intouch.lib.php in inTouch 0.5.1 Alpha allows remote malicious users to execute arbitrary SQL commands via the user parameter.
Intouch Intouch 0.5.1 Alpha
1 EDB exploit
755
VMScore
CVE-2006-0135
SQL injection vulnerability in login.php in TheWebForum (twf) 1.2.1 allows remote malicious users to execute arbitrary SQL commands and bypass login authentication via the username parameter (aka the u variable).
Thewebforum Thewebforum
1 EDB exploit
755
VMScore
CVE-2006-0160
SQL injection vulnerability in add_post.php3 in Venom Board 1.22 allows remote malicious users to execute arbitrary SQL commands via the (1) parent, (2) root, and (3) topic_id parameters to post.php3.
Venom Board Venom Board 1.22
1 EDB exploit
755
VMScore
CVE-2006-0209
SQL injection vulnerability in general_functions.php in TankLogger 2.4 allows remote malicious users to execute arbitrary SQL commands via the (1) livestock_id parameter to showInfo.php and (2) tank_id parameter, possibly to livestock.php.
Tanklogger Tanklogger 2.4
1 EDB exploit
435
VMScore
CVE-2006-0310
Cross-site scripting (XSS) vulnerability in aoblogger 2.3 allows remote malicious users to inject arbitrary Javascript via a javascript URI in the BBcode url tag.
Mike Helton Aoblogger 2.3
1 EDB exploit
755
VMScore
CVE-2006-0311
SQL injection vulnerability in login.php in aoblogger 2.3 allows remote malicious users to execute arbitrary SQL commands via the username parameter.
Mike Helton Aoblogger 2.3
1 EDB exploit
505
VMScore
CVE-2006-0312
create.php in aoblogger 2.3 allows remote malicious users to bypass authentication and create new blog entries by setting the uza parameter to 1.
Mike Helton Aoblogger 2.3
1 EDB exploit
755
VMScore
CVE-2006-0320
SQL injection vulnerability in admin/processlogin.php in Bit 5 Blog 8.01 allows remote malicious users to execute arbitrary SQL commands and bypass authentication via the (1) username and (2) password parameter.
Bit 5 Blog Bit 5 Blog
1 EDB exploit
435
VMScore
CVE-2006-0409
Cross-site scripting (XSS) vulnerability in index.php in Pixelpost Photoblog 1.4.3 allows remote malicious users to inject arbitrary web script or HTML via the "Add Comment" field in a comment popup.
Pixelpost Photoblog 1.4.3
1 EDB exploit
435
VMScore
CVE-2006-0443
Cross-site scripting (XSS) vulnerability in archive.php in CheesyBlog 1.0 allows remote malicious users to inject arbitrary web script or HTML via the (1) realname and (2) comment parameters, or (3) via a javascript URI in the url parameter, when adding a comment.
Cheesyblog Cheesyblog 1.0
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »