Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
hadi kiamarsi vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2009-4403
Cross-site scripting (XSS) vulnerability in index.php in Rumba XML 1.8 allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO. NOTE: some of these details are obtained from third party information.
Rumbacms Rumba Xml 1.8
1 EDB exploit
NA
CVE-2008-6406
Cross-site scripting (XSS) vulnerability in admin.php in DataLife Engine (DLE) 7.2 allows remote malicious users to inject arbitrary web script or HTML via the query string.
Datalifecms Datalife Engine 7.2
1 EDB exploit
NA
CVE-2009-3220
PHP remote file inclusion vulnerability in cp_html2txt.php in All In One Control Panel (AIOCP) 1.4.001 allows remote malicious users to execute arbitrary PHP code via a URL in the page parameter.
Tecnick Aiocp 1.4.001
1 EDB exploit
NA
CVE-2008-6617
Unrestricted file upload vulnerability in adm/visual/upload.php in SiteXS CMS 0.1.1 allows remote malicious users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/.
Sitexs Cms Sitexs Cms 0.1.1
1 EDB exploit
NA
CVE-2008-2186
Cross-site scripting (XSS) vulnerability in index.php in Chilek Content Management System (aka ChiCoMaS) 2.0.4 allows remote malicious users to inject arbitrary web script or HTML via the q parameter.
Cilekyazilim Chicomas 2.0.4
1 EDB exploit
NA
CVE-2008-2126
Multiple cross-site scripting (XSS) vulnerabilities in Tux CMS 0.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) q parameter to index.php and the (2) returnURL parameter to tux-login.php.
Tux Cms Tux Cms 0.1
1 EDB exploit
NA
CVE-2009-4747
PHP remote file inclusion vulnerability in public/code/cp_html2xhtmlbasic.php in All In One Control Panel (AIOCP) 1.4.001 allows remote malicious users to execute arbitrary PHP code via a URL in the page parameter, a different vector than CVE-2009-3220.
Tecnick Aiocp 1.4.001
1 EDB exploit
NA
CVE-2008-4775
Cross-site scripting (XSS) vulnerability in pmd_pdf.php in phpMyAdmin 3.0.0, and possibly other versions including 2.11.9.2 and 3.0.1, when register_globals is enabled, allows remote malicious users to inject arbitrary web script or HTML via the db parameter, a different vector t...
Phpmyadmin Phpmyadmin 3.0.0
Phpmyadmin Phpmyadmin 2.11.9.2
Phpmyadmin Phpmyadmin 3.0.1
1 EDB exploit
NA
CVE-2007-1231
Multiple cross-site scripting (XSS) vulnerabilities in SQLiteManager 1.2.0 allow remote malicious users to inject arbitrary web script or HTML via the (1) database name, (2) table name, (3) ViewName, (4) view, (5) trigger, and (6) function fields in main.php and certain other fil...
Sqlitemanager Sqlitemanager 1.2.0
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-30065
CVE-2024-5843
CVE-2024-30080
code execution
CVE-2024-4577
CVE-2024-26169
wireless
remote code execution
CVE-2024-36103
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started