Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
high-tech bridge sa vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2011-0503
Cross-site request forgery (CSRF) vulnerability in VaM Shop 1.6, 1.6.1, and probably earlier versions allows remote malicious users to hijack the authentication of administrators for requests that (1) change user status via admin/customers.php or (2) change user permissions via a...
Vamsoft Vam Shop 1.6
Vamsoft Vam Shop
1 EDB exploit
NA
CVE-2011-5072
Multiple SQL injection vulnerabilities in Support Incident Tracker (aka SiT!) prior to 3.65 allow remote malicious users to execute arbitrary SQL commands via the (1) start parameter to portal/kb.php; (2) contractid parameter to contract_add_service.php; (3) id parameter to edit_...
Sitracker Support Incident Tracker 3.50
Sitracker Support Incident Tracker 3.45
Sitracker Support Incident Tracker 3.41
Sitracker Support Incident Tracker 3.40
Sitracker Support Incident Tracker 3.63
Sitracker Support Incident Tracker 3.62
Sitracker Support Incident Tracker 3.30
Sitracker Support Incident Tracker 3.24
Sitracker Support Incident Tracker 3.60
Sitracker Support Incident Tracker 3.51
Sitracker Support Incident Tracker 3.36
Sitracker Support Incident Tracker 3.33
Sitracker Support Incident Tracker 3.31
Sitracker Support Incident Tracker 3.23
Sitracker Support Incident Tracker 3.22
Sitracker Support Incident Tracker 3.35
Sitracker Support Incident Tracker 3.61
Sitracker Support Incident Tracker 3.6
Sitracker Support Incident Tracker 3.32
Sitracker Support Incident Tracker 3.22pl1
Sitracker Support Incident Tracker 3.21
Sitracker Support Incident Tracker
1 EDB exploit
NA
CVE-2014-2996
XCloner Standalone 3.5 and previous versions, when enable_db_backup and sql_mem are enabled, allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in the dbbackup_comp parameter in a generate action to index2.php. NOTE: it is not clear ...
Xcloner Xcloner
1 EDB exploit
NA
CVE-2013-7376
Multiple cross-site request forgery (CSRF) vulnerabilities in OpenX 2.8.10, possibly before revision 82710, allow remote malicious users to hijack the authentication of administrators, as demonstrated by requests that conduct directory traversal attacks via the group parameter to...
Openx Openx 2.8.10
1 EDB exploit
NA
CVE-2012-0992
interface/fax/fax_dispatch.php in OpenEMR 4.1.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the file parameter.
Openemr Openemr 4.1.0
1 EDB exploit
NA
CVE-2010-2003
Cross-site scripting (XSS) vulnerability in misc/get_admin.php in Advanced Poll 2.08 allows remote malicious users to inject arbitrary web script or HTML via the mysql_host parameter.
Proxy2 Advanced Poll 2.08
1 EDB exploit
NA
CVE-2011-5313
Multiple SQL injection vulnerabilities in includes/password.php in Redaxscript 0.3.2 allow remote malicious users to execute arbitrary SQL commands via the (1) id or (2) password parameter to the password_reset program.
Redaxscript Redaxscript 0.3.2
1 EDB exploit
NA
CVE-2010-4399
Directory traversal vulnerability in languages.inc.php in DynPG CMS 4.1.1 and 4.2.0, when magic_quotes_gpc is disabled, allows remote malicious users to read arbitrary files via a .. (dot dot) in the CHG_DYNPG_SET_LANGUAGE parameter to index.php. NOTE: some of these details are o...
Dynpg Dynpg 4.2.0
Dynpg Dynpg 4.1.1
1 EDB exploit
NA
CVE-2010-4400
SQL injection vulnerability in _rights.php in DynPG CMS 4.2.0 allows remote malicious users to execute arbitrary SQL commands via the giveRights_UserId parameter.
Dynpg Dynpg 4.2.0
1 EDB exploit
NA
CVE-2010-4401
languages.inc.php in DynPG CMS 4.2.0 allows remote malicious users to obtain sensitive information via a direct request, which reveals the installation path in an error message.
Dynpg Dynpg 4.2.0
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3581
reflected XSS
CVE-2024-26925
CVE-2024-27956
LFI
CVE-2024-3607
CVE-2024-3107
CVE-2024-3295
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »