Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
d3v1l vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-6028
SQL injection vulnerability in list.php in University of Queensland Library Fez 1.3 and 2.0 RC1 allows remote malicious users to execute arbitrary SQL commands via the parent_id parameter in a subject action.
University Of Queensland Fez 2.0
University Of Queensland Fez 1.3
1 EDB exploit
NA
CVE-2008-6401
SQL injection vulnerability in sayfa.php in JETIK-WEB allows remote malicious users to execute arbitrary SQL commands via the kat parameter.
Jetik Jetik-web -
1 EDB exploit
NA
CVE-2010-2674
SQL injection vulnerability in index.php in TSOKA:CMS 1.1, 1.9, and 2.0 allows remote malicious users to execute arbitrary SQL commands via the id parameter in an articolo action.
Alanzard Tsoka\\ Cms
1 EDB exploit
NA
CVE-2010-2675
Cross-site scripting (XSS) vulnerability in index.php in TSOKA:CMS 1.1, 1.9, and 2.0 allows remote malicious users to inject arbitrary web script or HTML via the id parameter in an articolo action.
Alanzard Tsoka\\ Cms
1 EDB exploit
NA
CVE-2008-4336
Cross-site scripting (XSS) vulnerability in album.php in Atomic Photo Album (APA) 1.1.0pre4 allows remote malicious users to inject arbitrary web script or HTML via the apa_album_ID parameter.
Constantin Charissis Atomic Photo Album 1.1.0 Pre4
1 EDB exploit
NA
CVE-2008-4497
SQL injection vulnerability in event_detail.php in Built2Go Real Estate Listings 1.5 allows remote malicious users to execute arbitrary SQL commands via the event_id parameter.
Built2go Real Estate Listings 1.5
1 EDB exploit
NA
CVE-2009-2172
Cross-site scripting (XSS) vulnerability in forum/radioandtv.php in the Radio and TV Player addon for vBulletin allows remote registered users to inject arbitrary web script or HTML via the station parameter.
Dream Radio And Tv Player Addon For Vbulletin
1 EDB exploit
NA
CVE-2009-1624
Directory traversal vulnerability in index.php in Dew-NewPHPLinks 2.0 allows remote malicious users to read arbitrary files via a .. (dot dot) in the show parameter.
Dew-code Dew-newphplinks 2.0
1 EDB exploit
NA
CVE-2008-6031
SQL injection vulnerability in vote.php in WSN Links 2.22 and 2.23 allows remote malicious users to execute arbitrary SQL commands via the id parameter. NOTE: it was later reported that 2.34 is also vulnerable.
Wsn Links Wsn Links 2.22
Wsn Links Wsn Links 2.23
1 EDB exploit
NA
CVE-2008-6033
SQL injection vulnerability in comments.php in WSN Links 2.20 allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Wsn Links Wsn Links 2.20
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2024-5274
CVE-2020-17519
CVE-2024-35340
CVE-2021-47558
local
XML injection
CVE-2021-47519
CVE-2021-47543
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »