Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
yenh4cker vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2009-1615
Unrestricted file upload vulnerability in Leap CMS 0.1.4 allows remote malicious users to execute arbitrary code by uploading a file with an executable extension via an admin.system.files (aka Manage Files) request to the default URI, then accessing the file via a direct request.
Gowondesigns Leap 0.1.4
1 EDB exploit
NA
CVE-2009-1778
SQL injection vulnerability in the new user registration feature in BigACE CMS 2.5, when magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the username parameter.
Bigace Bigace Cms 2.5
1 EDB exploit
NA
CVE-2009-1809
Multiple cross-site scripting (XSS) vulnerabilities in myColex 1.4.2 allow remote malicious users to inject arbitrary web script or HTML via (1) the year parameter to modules/kalender.php, (2) the Page parameter in a List action to modules/ereignis.php, (3) the Kontext parameter ...
Collector Mycolex 1.4.2
1 EDB exploit
NA
CVE-2009-1810
Multiple SQL injection vulnerabilities in myColex 1.4.2 allow remote malicious users to execute arbitrary SQL commands via (1) the formUser parameter (aka the Name field) to common/login.php, and allow remote authenticated users to execute arbitrary SQL commands via the ID parame...
Collector Mycolex 1.4.2
1 EDB exploit
NA
CVE-2009-1812
Multiple SQL injection vulnerabilities in myGesuad 0.9.14 (aka 0.9) allow remote malicious users to execute arbitrary SQL commands via (1) the formUser parameter (aka the Name field) to common/login.php, and allow remote authenticated users to execute arbitrary SQL commands via t...
Collector Mygesuad 0.9.14
1 EDB exploit
NA
CVE-2009-1843
Multiple SQL injection vulnerabilities in Flash Quiz Beta 2 allow remote malicious users to execute arbitrary SQL commands via the (1) quiz parameter to (a) num_questions.php, (b) answers.php, (c) high_score.php, (d) high_score_web.php, (e) results_table_web.php, and (f) question...
Glenn Mcgurrin Flash Quiz Beta2
1 EDB exploit
NA
CVE-2009-1910
SQL injection vulnerability in index.php in RTWebalbum 1.0.462 allows remote malicious users to execute arbitrary SQL commands via the AlbumId parameter.
Rafal Kucharski Rtwebalbum 1.0.462
1 EDB exploit
NA
CVE-2009-2036
SQL injection vulnerability in index.php in Open Biller 0.1 allows remote malicious users to execute arbitrary SQL commands via the username parameter.
Geekbill Open Biller 0.1
1 EDB exploit
NA
CVE-2009-2010
Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.9 and previous versions allow remote authenticated users to execute arbitrary SQL commands via the (1) thread parameter to messageboard.php, (2) member parameter to profile.php, (3) pid paramet...
Haudenschilt Family Connections Cms
Haudenschilt Family Connections Cms 1.4
Haudenschilt Family Connections Cms 0.1.2
Haudenschilt Family Connections Cms 1.8.1
Haudenschilt Family Connections Cms 0.5
Haudenschilt Family Connections Cms 0.1.1
Haudenschilt Family Connections Cms 0.9
Haudenschilt Family Connections Cms 1.8.2
Haudenschilt Family Connections Cms 0.8
Haudenschilt Family Connections Cms 0.6
1 EDB exploit
NA
CVE-2009-2451
Multiple SQL injection vulnerabilities in index.php in MIM:InfiniX 1.2.003 and possibly earlier versions allow remote malicious users to execute arbitrary SQL commands via the (1) month and (2) year parameters in a calendar action, or (3) a search term in the search form.
Mim.infinix Infinix
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »