Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
virusman vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2010-0680
Directory traversal vulnerability in index.php in ZeusCMS 0.2 allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the page parameter.
Zeuscms Zeuscms 0.2
1 EDB exploit
7.5
CVSSv2
CVE-2009-4583
SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote malicious users to execute arbitrary SQL commands via the id parameter in a grouplist action to index.php.
Joomla Com Dhforum
1 EDB exploit
6.8
CVSSv2
CVE-2010-1077
Directory traversal vulnerability in vbseo.php in Crawlability vBSEO plugin 3.1.0 for vBulletin allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the vbseourl parameter.
Vbseo Vbseo 3.1.0
1 EDB exploit
6.8
CVSSv2
CVE-2010-0707
Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote malicious users to hijack the authentication of an administrator for requests that create new administrative users. NOTE: some of these details are obtained from thir...
Timeclock-software Employee Timeclock Software 0.99
1 EDB exploit
5
CVSSv2
CVE-2009-5019
Web Wiz NewsPad stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for database/NewsPad.mdb.
Webwiz Web Wiz Newspad 1.02
Webwiz Web Wiz Newspad 1.01
Webwiz Web Wiz Newspad 1.0
Webwiz Web Wiz Newspad 1.03
2 EDB exploits
5
CVSSv2
CVE-2010-1067
E-membres 1.0 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for db/bdEMembres.mdb.
Hasmir Alic E-membres 1.0
1 EDB exploit
5
CVSSv2
CVE-2010-0939
Visialis ABB Forum 1.1 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for fpdb/abb.mdb.
Visialis Abb Forum 1.1
1 EDB exploit
5
CVSSv2
CVE-2010-0765
fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for _database/forumFips.mdb.
Fipsasp Fipsforum 2.6
1 EDB exploit
5
CVSSv2
CVE-2010-0681
ZeusCMS 0.2 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to obtain sensitive information via a direct request for admin/backup.sql.
Zeuscms Zeuscms 0.2
1 EDB exploit
5
CVSSv2
CVE-2008-0135
Snitz Forums 2000 3.4.06 and previous versions stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for forum/snitz_forums_2000.mdb.
Snitz Communications Snitz Forums 2000 3.4.02
Snitz Communications Snitz Forums 2000 3.3
Snitz Communications Snitz Forums 2000 3.0
Snitz Communications Snitz Forums 2000 3.4.05
Snitz Communications Snitz Forums 2000 3.3.03
Snitz Communications Snitz Forums 2000 3.3.01
Snitz Communications Snitz Forums 2000
Snitz Communications Snitz Forums 2000 3.4.04
Snitz Communications Snitz Forums 2000 3.4.03
Snitz Communications Snitz Forums 2000 3.1
Snitz Communications Snitz Forums 2000 3.3.02
Snitz Communications Snitz Forums 2000 3.2.03
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »