Lucene search

K

Max's Guestbook Security Vulnerabilities

securityvulns
securityvulns

CJWSoft ASPGuest GuestBook 'edit.asp' - SQL Injection Vulnerability

Title: CJWSoft ASPGuest GuestBook 'edit.asp' - SQL Injection Vulnerability Product : CJWSoft ASPGuest GuestBook Version : Free Version Vendor: http://www.cjwsoft.com/aspguest/default.asp Class: Input Validation Error CVE: Remote: Yes Local: No Published: 2012-02-24 Updated: Impact :...

1.2AI Score

2012-03-19 12:00 AM
66
exploitdb

7.4AI Score

2012-03-14 12:00 AM
16
exploitpack
exploitpack

Max Guestbook 1.0 - Multiple Vulnerabilities

Max Guestbook 1.0 - Multiple...

0.4AI Score

2012-03-14 12:00 AM
13
exploitpack
exploitpack

Maxs Guestbook 1.0 - Multiple Remote Vulnerabilities

Maxs Guestbook 1.0 - Multiple Remote...

0.2AI Score

2012-03-14 12:00 AM
4
exploitdb

7.4AI Score

2012-03-14 12:00 AM
11
packetstorm

-0.3AI Score

2012-03-13 12:00 AM
21
packetstorm

AI Score

2012-03-04 12:00 AM
11
exploitdb

7.4AI Score

2012-03-04 12:00 AM
30
myhack58
myhack58

shypostShyPost enterprise website management system a number of vulnerabilities-vulnerability warning-the black bar safety net

ShyPost enterprise management system with dozens of templates, the user can freely choose a different template background management functions is the same, the following is one of the templates before and after the test, welcome to the user testing. Background demo:...

AI Score

2012-03-04 12:00 AM
6
exploitpack
exploitpack

LastGuru ASP Guestbook - View.asp SQL Injection

LastGuru ASP Guestbook - View.asp SQL...

-0.2AI Score

2012-03-04 12:00 AM
6
packetstorm

0.1AI Score

2012-02-24 12:00 AM
15
securityvulns
securityvulns

Bart`s CMS - SQL Injection Vulnerability

Title: Bart`s CMS - SQL Injection Vulnerability Date: 2012-01-23 References: http://www.vulnerability-lab.com/get_content.php?id=390 VL-ID: 390 Introduction: It is a website Content Management System that is build with Codecharge Studio. There will also be a commercial package, which contains all.....

0.2AI Score

2012-02-13 12:00 AM
36
packetstorm

-0.2AI Score

2012-01-28 12:00 AM
32
dsquare
dsquare

Hinnendahl Gaestebuch 1.2 RFI

Remote file include vulnerability in Gaestebuch guestbook/gbook.php Vulnerability Type: Remote File...

0.3AI Score

0.007EPSS

2012-01-26 12:00 AM
25
packetstorm

0.1AI Score

2012-01-23 12:00 AM
22
vulnerlab

7.1AI Score

2012-01-23 12:00 AM
13
vulnerlab

0.3AI Score

2012-01-23 12:00 AM
22
zdt
zdt

w-CMS 2.01 Multiple Vulnerabilities

Exploit for php platform in category web...

7.1AI Score

2012-01-10 12:00 AM
7
securityvulns
securityvulns

Web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks,...

1.6AI Score

0.005EPSS

2012-01-09 12:00 AM
49
securityvulns
securityvulns

Ggb Guestbook - XSS Vulnerabilities

Title: Ggb Guestbook - XSS Vulnerabilities Software : Ggb Guestbook Software Version : 0.3.1 Vendor: http://gelin.ru/soft/project/ggb/ http://code.google.com/p/ggbook/ Vulnerability Published : 2012-01-05 Vulnerability Update Time : Status : Impact : Medium Bug Description : Ggb...

0.4AI Score

2012-01-09 12:00 AM
32
securityvulns
securityvulns

Winn Guestbook v2.4.8c Stored XSS

Exploit Title: Winn Guestbook v2.4.8c Stored XSS Date: 12/29/11 Author: G13 Software Link: http://code.google.com/p/winn-guestbook/, http://www.winn.ws Version: 2.4.8c Category: webapps (php) CVE: 2011-5026 Vulnerability There is no sanitation on the input of the name variable. This allows ...

1.6AI Score

2012-01-09 12:00 AM
31
packetstorm

0.2AI Score

2012-01-06 12:00 AM
21
packetstorm

0.5AI Score

2012-01-03 12:00 AM
19
nvd
nvd

CVE-2011-5026

Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook before 2.4.8d allows remote attackers to inject arbitrary web script or HTML via the name parameter to index.php. NOTE: some of these details are obtained from third party...

5.7AI Score

0.003EPSS

2011-12-29 04:15 AM
cve
cve

CVE-2011-5026

Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook before 2.4.8d allows remote attackers to inject arbitrary web script or HTML via the name parameter to index.php. NOTE: some of these details are obtained from third party...

5.9AI Score

0.003EPSS

2011-12-29 04:15 AM
24
prion
prion

Cross site scripting

Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook before 2.4.8d allows remote attackers to inject arbitrary web script or HTML via the name parameter to index.php. NOTE: some of these details are obtained from third party...

6.2AI Score

0.003EPSS

2011-12-29 04:15 AM
6
cvelist
cvelist

CVE-2011-5026

Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook before 2.4.8d allows remote attackers to inject arbitrary web script or HTML via the name parameter to index.php. NOTE: some of these details are obtained from third party...

5.7AI Score

0.003EPSS

2011-12-29 02:00 AM
exploitpack
exploitpack

Winn Guestbook 2.4.8c - Persistent Cross-Site Scripting

Winn Guestbook 2.4.8c - Persistent Cross-Site...

-1AI Score

2011-12-29 12:00 AM
4
packetstorm

-0.5AI Score

0.003EPSS

2011-12-29 12:00 AM
23
zdt
zdt

Winn Guestbook v2.4.8c Stored XSS Vulnerability

Exploit for php platform in category web...

7.1AI Score

2011-12-29 12:00 AM
10
exploitdb

7.4AI Score

EPSS

2011-12-29 12:00 AM
15
myhack58
myhack58

Century wind enterprise website management system plug horse vulnerabilities and fixes-vulnerability warning-the black bar safety net

From www.0855.tv by Mr. DzY Century wind enterprise website management system of SME-oriented Web Site Management System,page fine,atmosphere. Having a stable set of strong,multi-function,Safety,code loading speed,web site content management, easy operation and other advantages. The use of...

AI Score

2011-12-04 12:00 AM
5
cve
cve

CVE-2010-4987

SQL injection vulnerability in default.asp in KMSoft Guestbook (aka GBook) allows remote attackers to execute arbitrary SQL commands via the p...

8.7AI Score

0.001EPSS

2011-11-01 10:55 PM
18
nvd
nvd

CVE-2010-4987

SQL injection vulnerability in default.asp in KMSoft Guestbook (aka GBook) allows remote attackers to execute arbitrary SQL commands via the p...

8.4AI Score

0.001EPSS

2011-11-01 10:55 PM
nvd
nvd

CVE-2010-4996

SQL injection vulnerability in ogp_show.php in esoftpro Online Guestbook Pro 5.1 allows remote attackers to execute arbitrary SQL commands via the search...

8.4AI Score

0.001EPSS

2011-11-01 10:55 PM
cve
cve

CVE-2010-4996

SQL injection vulnerability in ogp_show.php in esoftpro Online Guestbook Pro 5.1 allows remote attackers to execute arbitrary SQL commands via the search...

8.7AI Score

0.001EPSS

2011-11-01 10:55 PM
89
prion
prion

Sql injection

SQL injection vulnerability in default.asp in KMSoft Guestbook (aka GBook) allows remote attackers to execute arbitrary SQL commands via the p...

9.1AI Score

0.001EPSS

2011-11-01 10:55 PM
1
prion
prion

Sql injection

SQL injection vulnerability in ogp_show.php in esoftpro Online Guestbook Pro 5.1 allows remote attackers to execute arbitrary SQL commands via the search...

9.1AI Score

0.001EPSS

2011-11-01 10:55 PM
25
cvelist
cvelist

CVE-2010-4996

SQL injection vulnerability in ogp_show.php in esoftpro Online Guestbook Pro 5.1 allows remote attackers to execute arbitrary SQL commands via the search...

8.4AI Score

0.001EPSS

2011-11-01 10:00 PM
cvelist
cvelist

CVE-2010-4987

SQL injection vulnerability in default.asp in KMSoft Guestbook (aka GBook) allows remote attackers to execute arbitrary SQL commands via the p...

8.4AI Score

0.001EPSS

2011-11-01 10:00 PM
1
myhack58
myhack58

YOTHCMS guestbook write horse vulnerabilities and fixes-vulnerability warning-the black bar safety net

Some time ago released this system to traverse a directory problem. Feedback after the official has been amended. Today stumbled upon a new version of the Yothshop Mall system, can be found in Database inserted into a word, and a successful connection. Affect all versions. Official website:...

1.1AI Score

2011-10-20 12:00 AM
9
myhack58
myhack58

DEDECMS full version gotopage variable XSS ROOTKITS, 0DAY-vulnerability warning-the black bar safety net

Affected versions: DEDECMS full version The vulnerability described in: DEDECMS background landing template gotopage variable is not tested incoming data, leading toXSSvulnerabilities. \dede\templets\login.htm 6 5 the left and right <input type="hidden" name="gotopage" value="<? php if(!...

1.3AI Score

2011-10-17 12:00 AM
12
cve
cve

CVE-2010-4884

PHP remote file inclusion vulnerability in guestbook/gbook.php in Gaestebuch 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad...

7.8AI Score

0.007EPSS

2011-10-07 10:55 AM
24
nvd
nvd

CVE-2010-4884

PHP remote file inclusion vulnerability in guestbook/gbook.php in Gaestebuch 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad...

7.5AI Score

0.007EPSS

2011-10-07 10:55 AM
prion
prion

Remote file inclusion

PHP remote file inclusion vulnerability in guestbook/gbook.php in Gaestebuch 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad...

8AI Score

0.007EPSS

2011-10-07 10:55 AM
2
cvelist
cvelist

CVE-2010-4884

PHP remote file inclusion vulnerability in guestbook/gbook.php in Gaestebuch 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad...

7.5AI Score

0.007EPSS

2011-10-07 10:00 AM
nvd
nvd

CVE-2010-4865

SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the d_itemid parameter in an item_detail action to...

8.3AI Score

0.002EPSS

2011-10-05 10:55 AM
2
cve
cve

CVE-2010-4865

SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the d_itemid parameter in an item_detail action to...

8.6AI Score

0.002EPSS

2011-10-05 10:55 AM
22
prion
prion

Sql injection

SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the d_itemid parameter in an item_detail action to...

9AI Score

0.002EPSS

2011-10-05 10:55 AM
cvelist
cvelist

CVE-2010-4865

SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the d_itemid parameter in an item_detail action to...

8.3AI Score

0.002EPSS

2011-10-05 10:00 AM
1
Total number of security vulnerabilities2444