Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sirgod vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2009-1319
Directory traversal vulnerability in includes/ini.inc.php in GuestCal 2.1 allows remote malicious users to include and execute arbitrary files via a .. (dot dot) in the lang parameter to index.php.
Guestcal Guest Cal 2.1
1 EDB exploit
NA
CVE-2009-1367
Cross-site scripting (XSS) vulnerability in index.php in moziloCMS 1.11 allows remote malicious users to inject arbitrary web script or HTML via the query parameter in search action, a different issue than CVE-2008-6127.2a.
Mozilo Mozilocms 1.11
1 EDB exploit
NA
CVE-2009-1368
Directory traversal vulnerability in index.php in moziloCMS 1.11 allows remote malicious users to read arbitrary files via a .. (dot dot) in the page parameter. NOTE: this might be the same issue as CVE-2008-6126.2, which may have been fixed in 1.10.3.
Mozilo Mozilocms 1.11
1 EDB exploit
NA
CVE-2009-1405
Directory traversal vulnerability in index.php in PastelCMS 0.8.0, when magic_quotes_gpc is disabled, allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the set_lng parameter.
Pastel Pastelcms 0.8.0
1 EDB exploit
NA
CVE-2009-1486
Directory traversal vulnerability in pmscript.php in Flatchat 3.0 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the with parameter.
Ninjadesigns Flatchat 3.0
1 EDB exploit
NA
CVE-2009-2124
Directory traversal vulnerability in page.php in Elvin 1.2.0 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the id parameter.
Elvinbts Elvinbts 1.2.0
1 EDB exploit
NA
CVE-2008-6126
Multiple directory traversal vulnerabilities in moziloCMS 1.10.2 and previous versions allow remote malicious users to read arbitrary files via a .. (dot dot) in the (1) file parameter to download.php and the (2) page parameter to index.php, a different vector than CVE-2008-3589.
Mozilo Mozilocms 1.9.1
Mozilo Mozilocms 1.9
Mozilo Mozilocms 1.4
Mozilo Mozilocms 1.3.1
Mozilo Mozilocms
Mozilo Mozilocms 1.10
Mozilo Mozilocms 1.6.2
Mozilo Mozilocms 1.6.1
Mozilo Mozilocms 1.1.1
Mozilo Mozilocms 1.1
Mozilo Mozilocms 1.0
Mozilo Mozilocms 1.9.3
Mozilo Mozilocms 1.9.2
Mozilo Mozilocms 1.6
Mozilo Mozilocms 1.5
Mozilo Mozilocms 1.10.1
Mozilo Mozilocms 1.8
Mozilo Mozilocms 1.7
Mozilo Mozilocms 1.3
Mozilo Mozilocms 1.2
1 EDB exploit
NA
CVE-2009-2792
Directory traversal vulnerability in plugings/pagecontent.php in Really Simple CMS (RSCMS) 0.3a allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the PT parameter.
Joshua Oliver Really Simple Cms 0.3a
1 EDB exploit
NA
CVE-2009-3217
SQL injection vulnerability in the admin module in iWiccle 1.01 allows remote malicious users to execute arbitrary SQL commands via the member_id parameter in an edit_user action to index.php.
Wiccle Iwiccle 1.01
1 EDB exploit
NA
CVE-2009-3422
login.php in Zenas PaoLiber 1.1, when register_globals is enabled, allows remote malicious users to bypass authentication and gain administrative access by setting the login_ok parameter to 1.
Zenas Paoliber 1.1
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »