Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alphanix vulnerabilities and exploits
(subscribe to this query)
755
VMScore
CVE-2008-6874
Multiple SQL injection vulnerabilities in ASP SiteWare autoDealer 1 and 2 allow remote malicious users to execute arbitrary SQL commands via the iType parameter in (1) Auto1/type.asp or (2) auto2/type.asp.
Aspsiteware Autodealer 1.0
Aspsiteware Autodealer 2.0
1 EDB exploit
755
VMScore
CVE-2008-6319
SQL injection vulnerability in calendarevent.cfm in CF_Calendar allows remote malicious users to execute arbitrary SQL commands via the calid parameter.
Cfmsource Cf Calendar -
1 EDB exploit
505
VMScore
CVE-2008-6321
CF Shopkart 5.2.2 stores cfshopkart52.mdb under the web root with insufficient access control, which allows remote malicious users to obtain sensitive information, such as usernames and passwords, via a direct request.
Cfshopkart Cf Shopkart 5.2.2
1 EDB exploit
755
VMScore
CVE-2008-6320
SQL injection vulnerability in index.cfm in CF Shopkart 5.2.2 allows remote malicious users to execute arbitrary SQL commands via the Category parameter in a ViewCategory action.
Cfshopkart Cf Shopkart 5.2.2
1 EDB exploit
755
VMScore
CVE-2008-6322
SQL injection vulnerability in index.cfm in CFMSource CFMBlog allows remote malicious users to execute arbitrary SQL commands via the categorynbr parameter.
Cfmsource Cfmblog -
1 EDB exploit
755
VMScore
CVE-2008-6323
SQL injection vulnerability in forummessages.cfm in CFMSource CF_Auction allows remote malicious users to execute arbitrary SQL commands via the categorynbr parameter.
Cfmsource Cf Auction -
1 EDB exploit
755
VMScore
CVE-2008-6324
SQL injection vulnerability in forummessages.cfm in CF_Forum allows remote malicious users to execute arbitrary SQL commands via the categorynbr parameter.
Cfmsource Cf Forum -
1 EDB exploit
505
VMScore
CVE-2008-6354
The Net Guys ASPired2poll stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database containing the username and password via a direct request to ASPired2poll.mdb.
Thenetguys Aspired2poll -
1 EDB exploit
505
VMScore
CVE-2008-6355
The Net Guys ASPired2Protect stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database containing the username and password via a direct request to ASPired2Protect.mdb.
Thenetguys Aspired2protect -
1 EDB exploit
505
VMScore
CVE-2008-6374
CodefixerSoftware MailingListPro Free Edition stores sensitive information under the web root with insufficient access control, which allows remote malicious users to obtain sensitive information via a direct request to db/MailingList.mdb.
Codefixer Mailinglistpro -
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »