Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sql injection vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-5865
SQL injection vulnerability in the com_hbssearch component 1.0 in the Hotel Booking Reservation System (aka HBS) 1.0.0 for Joomla! allows remote malicious users to execute arbitrary SQL commands via the r_type parameter in a showhoteldetails action to index.php.
Joomlahbs Hotel Booking Reservation System 1.0.0
4 EDB exploits
NA
CVE-2006-3271
Multiple SQL injection vulnerabilities in Softbiz Dating 1.0 allow remote malicious users to execute SQL commands via the (1) country and (2) sort_by parameters in (a) search_results.php; (3) browse parameter in (b) featured_photos.php; (4) cid parameter in (c) products.php, (d) ...
Softbiz Dating Script 1.0
5 EDB exploits
NA
CVE-2008-4881
SQL injection vulnerability in tr.php in YourFreeWorld Reminder Service Script allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Yourfreeworld Reminder Service Script
2 EDB exploits
NA
CVE-2008-4884
SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Hosting Script allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Yourfreeworld Classifieds Hosting Script
2 EDB exploits
NA
CVE-2006-2046
Multiple SQL injection vulnerabilities in Application Dynamics Cartweaver ColdFusion 2.16.11 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) category and (2) keywords parameters in (a) Results.cfm, and the (3) ProdID parameter in (...
Application Dynamics Cartweaver Coldfusion
2 EDB exploits
NA
CVE-2007-6266
Multiple SQL injection vulnerabilities in bcoos 1.0.10 and previous versions allow remote malicious users to execute arbitrary SQL commands via (1) the gid parameter to modules/arcade/index.php in a show_stats action, or the lid parameter to (2) modules/myalbum/ratephoto.php or (...
Bcoos Bcoos 1.0.10
2 EDB exploits
NA
CVE-2008-4900
SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Blaster Script allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Yourfreeworld Classifieds Blaster Script
2 EDB exploits
NA
CVE-2010-2687
SQL injection vulnerability in printdetail.asp in Site2Nite Boat Classifieds allows remote malicious users to execute arbitrary SQL commands via the Id parameter.
Site2nite Boat Classifieds
2 EDB exploits
NA
CVE-2011-5213
Multiple SQL injection vulnerabilities in BrowserCRM 5.100.01 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) login[username] parameter to index.php, (2) parent_id parameter to modules/Documents/version_list.php, or (3) contact_id ...
Browsercrm Browsercrm 5.001.00
Browsercrm Browsercrm 5.000.01
Browsercrm Browsercrm 4.624.60
Browsercrm Browsercrm 4.624.50
Browsercrm Browsercrm 4.616.00
Browsercrm Browsercrm 4.615.11
Browsercrm Browsercrm 4.615.10
Browsercrm Browsercrm 4.604.01
Browsercrm Browsercrm 5.000.00
Browsercrm Browsercrm 4.999.20
Browsercrm Browsercrm 4.624.01
Browsercrm Browsercrm 4.624.00
Browsercrm Browsercrm 4.614.00
Browsercrm Browsercrm 4.612.00
Browsercrm Browsercrm
Browsercrm Browsercrm 4.691.01
Browsercrm Browsercrm 4.624.90
Browsercrm Browsercrm 4.622.00
Browsercrm Browsercrm 4.620.01
Browsercrm Browsercrm 4.611.01
Browsercrm Browsercrm 4.610.00
Browsercrm Browsercrm 5.100.00
2 EDB exploits
NA
CVE-2012-3350
SQL injection vulnerability in index.php in Webmatic 3.1.1 allows remote malicious users to execute arbitrary SQL commands via the Referer HTTP header.
Valarsoft Webmatic 3.1.1
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »