Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
doz vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-5724
Multiple cross-site scripting (XSS) vulnerabilities in Omnistar Live allow remote malicious users to inject arbitrary web script or HTML via (1) the category_id parameter to users/kb.php, and possibly (3) the Email Box field in profile.php.
Omnistar Interactive Omnistar Live
1 EDB exploit
NA
CVE-2007-5725
Multiple cross-site scripting (XSS) vulnerabilities in Smart-Shop allow remote malicious users to inject arbitrary web script or HTML via (1) the email parameter to index.php; or the command parameter to index.php in (2) the default action for the home page, (3) a currencies acti...
Smart-shop Smart-shop
1 EDB exploit
NA
CVE-2007-5370
Multiple cross-site scripting (XSS) vulnerabilities in cgi-bin/dnewsweb.exe in NetWin DNewsWeb (DNews News Server) 57e1 allow remote malicious users to inject arbitrary web script or HTML via the (1) group or (2) utag parameter.
Netwin Dnewsweb 57e1
1 EDB exploit
NA
CVE-2007-5011
webbatch.exe in WebBatch allows remote malicious users to obtain sensitive information via the dumpinputdata parameter.
Wilson Windowware Webbatch
1 EDB exploit
NA
CVE-2007-5010
Cross-site scripting (XSS) vulnerability in WebBatch allows remote malicious users to inject arbitrary web script or HTML via the URL to webbatch.exe.
Wilson Windowware Webbatch 2007c
1 EDB exploit
NA
CVE-2007-4899
Multiple cross-site scripting (XSS) vulnerabilities in Boinc Forum 5.10.20 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) id parameter to forum_forum.php, or the search_string parameter to forum_text_search_action.php in a (2...
Berkeley Boinc Forum
2 EDB exploits
NA
CVE-2007-3323
SQL injection vulnerability in comersus_optReviewReadExec.asp in Comersus Shop Cart 7.07 allows remote malicious users to execute arbitrary SQL commands via the idProduct parameter. NOTE: this might be the same as CVE-2005-2190.2.
Comersus Open Technologies Comersus Cart 7.07
1 EDB exploit
NA
CVE-2007-3324
Multiple cross-site scripting (XSS) vulnerabilities in Comersus Cart 7.07 allow remote malicious users to inject arbitrary web script or HTML via the redirectUrl parameter to (1) comersus_customerAuthenticateForm.asp or (2) comersus_message.asp, different vectors than CVE-2004-06...
Comersus Open Technologies Comersus Cart 7.07
2 EDB exploits
NA
CVE-2007-0567
Cross-site scripting (XSS) vulnerability in admin.php in Interactive-Scripts.Com PHP Membership Manager 1.5 allows remote malicious users to inject arbitrary web script or HTML via the _p parameter.
Interactive-scripts.com Php Membership Manager 1.5
1 EDB exploit
NA
CVE-2007-0302
Multiple cross-site scripting (XSS) vulnerabilities in InstantASP 4.1.0 allow remote malicious users to inject arbitrary web script or HTML via the (1) SessionID parameter to (a) Logon.aspx, and the (2) Username and (3) Update parameters to (b) Members1.aspx.
Instantasp Instantasp 4.1.0
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
spoof
CVE-2024-34928
CVE-2024-5291
deserialization
CVE-2024-4471
CVE-2024-4956
CVE-2024-32002
CVE-2024-5227
unspecified
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »