Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
condemned vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2008-5287
SQL injection vulnerability in catagorie.php in Werner Hilversum FAQ Manager 1.2 allows remote malicious users to execute arbitrary SQL commands via the cat_id parameter.
Scripts4you Faq Manager 1.2
1 EDB exploit
5
CVSSv2
CVE-2008-5218
ScriptsEz FREEze Greetings 1.0 stores pwd.txt under the web root with insufficient access control, which allows remote malicious users to obtain cleartext passwords.
Scriptsez Freeze Greetings 1.0
1 EDB exploit
7.5
CVSSv2
CVE-2008-5594
Multiple directory traversal vulnerabilities in index.php in Mini Blog 1.0.1 allow remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the (1) page and (2) admin parameters.
Bpowerhouse Mini Blog 1.0.1
1 EDB exploit
6.8
CVSSv2
CVE-2008-1607
SQL injection vulnerability in haberoku.php in Serbay Arslanhan Bomba Haber 2.0 allows remote malicious users to execute arbitrary SQL commands via the haber parameter.
Serby Arslanhan Bomba Haber 2.0
1 EDB exploit
7.5
CVSSv2
CVE-2008-3848
SQL injection vulnerability in single.php in Z-Breaknews 2.0 allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Pdesigner Z-breaknews 2.0
1 EDB exploit
5.1
CVSSv2
CVE-2008-5217
Directory traversal vulnerability in index.php in txtCMS 0.3, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the id parameter.
Phpc0d3r Txtcms 0.3
1 EDB exploit
7.5
CVSSv2
CVE-2009-0110
SQL injection vulnerability in read.php in RiotPix 0.61 and previous versions allows remote malicious users to execute arbitrary SQL commands via the forumid parameter.
Riotpix Riotpix
Riotpix Riotpix 0.60
Riotpix Riotpix 0.52
Riotpix Riotpix 0.5
Riotpix Riotpix 0.51
Riotpix Riotpix .05
1 EDB exploit
7.5
CVSSv2
CVE-2008-3377
SQL injection vulnerability in picture.php in phpTest 0.6.3 allows remote malicious users to execute arbitrary SQL commands via the image_id parameter.
Brandon Tallent Phptest 0.6.3
1 EDB exploit
6.5
CVSSv2
CVE-2008-3718
Multiple SQL injection vulnerabilities in cyberBB 0.6 allow remote authenticated users to execute arbitrary SQL commands via the (1) id parameter to show_topic.php and the (2) user parameter to profile.php.
Cyberbb Cyberbb 0.6
1 EDB exploit
6.8
CVSSv2
CVE-2008-2887
Directory traversal vulnerability in index.php in chaozz@work FubarForum 1.5 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the page parameter.
Chaozzatwork Fubarforum 1.5
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »