| OSVDB ID | Disclosure Date | Title |
|
51989
Description:
A Better Member-Based ASP Photo Gallery contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the view.asp script not properly sanitizing user-supplied input to the entry parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2009-02-09
|
A Better Member-Based ASP Photo Gallery view.asp entry Parameter SQL Injection
|
|
83667
Description:
A Page Flip Book Plugin for WordPress contains a flaw that may allow a remote attacker to execute arbitrary commands or code. This issue is triggered when input passed to the wp-content/plugins/wppageflip/pageflipbook.php script from index.php is not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied to the 'pageflipbook_language' parameter. This may allow an attacker to include a file from the targeted host that contains arbitrary commands or code that will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system accessible by the web server.
|
2012-07-10
|
A Page Flip Book Plugin for WordPress index.php pageflipbook_language Parameter Traversal Local File Inclusion
|
|
73540
Description:
A Really Simple Chat (ARSC) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'base/admin/edit_layout.php' script not properly sanitizing user-supplied input to the 'arsc_layout_id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-05-26
|
A Really Simple Chat (ARSC) base/admin/edit_layout.php arsc_layout_id Parameter SQL Injection
|
|
73541
Description:
A Really Simple Chat (ARSC) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'base/admin/edit_room.php' script not properly sanitizing user-supplied input to the 'arsc_room' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-05-26
|
A Really Simple Chat (ARSC) base/admin/edit_room.php arsc_room Parameter SQL Injection
|
|
73539
Description:
A Really Simple Chat (ARSC) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'base/admin/edit_user.php' script not properly sanitizing user-supplied input to the 'arsc_user' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-05-26
|
A Really Simple Chat (ARSC) base/admin/edit_user.php arsc_user Parameter SQL Injection
|
|
73538
Description:
A Really Simple Chat (ARSC) contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'arsc_message' parameter upon submission to the 'chat/base/admin/login.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-06-02
|
A Really Simple Chat (ARSC) chat/base/admin/login.php arsc_message Parameter XSS
|
|
73542
Description:
A Really Simple Chat (ARSC) contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'arsc_link' parameter upon submission to the 'dereferer.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-05-26
|
A Really Simple Chat (ARSC) dereferer.php arsc_link Parameter XSS
|
|
86069
Description:
A to Z Category Listing Plugin for WordPress contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the post_retrive_ajax.php script not properly sanitizing user-supplied input to the 'R' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-09-09
|
A to Z Category Listing Plugin for WordPress post_retrive_ajax.php R Parameter SQL Injection
|
|
53466
Description:
(Description Provided by CVE) : A+ PHP Scripts News Management System (NMS) allows remote attackers to bypass authentication and gain administrator privileges by setting the mobsuser and mobspass cookies to 1.
|
2008-06-26
|
A+ PHP Scripts News Management System (NMS) Multiple Cookie Manipulation Remote Admin Authentication Bypass
|
|
30418
Description:
A+ Store E-Commerce contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'username' and 'passwd' variables upon submission to the 'account_login.asp' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-11-14
|
A+ Store E-Commerce account_login.asp Multiple Parameter XSS
|
|
30417
Description:
A+ Store E-Commerce contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'browse.asp' script not properly sanitizing user-supplied input to the 'ParentID' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-11-14
|
A+ Store E-Commerce browse.asp ParentID Parameter SQL Injection
|
|
54522
Description:
(Description Provided by CVE) : Application Access Server (A-A-S) 2.0.48 stores (1) passwords and (2) the port keyword in cleartext in aas.ini, which allows local users to obtain sensitive information by reading this file.
|
2009-05-11
|
A-A-S Application Access Server aas.ini Cleartext Credentials Local Disclosure
|
|
54523
Description:
(Description Provided by CVE) : Application Access Server (A-A-S) 2.0.48 has "wildbat" as its default password for the admin account, which makes it easier for remote attackers to obtain access.
|
2009-05-11
|
A-A-S Application Access Server Admin Account Default Password
|
|
54398
Description:
(Description Provided by CVE) : Multiple cross-site request forgery (CSRF) vulnerabilities in index.aas in Application Access Server (A-A-S) 2.0.48 allow remote attackers to hijack the authentication of administrators for requests that (1) execute arbitrary programs via a command job, (2) stop services via a setservice job, or (3) terminate processes via a killprocess job.
|
2009-05-11
|
A-A-S Application Access Server index.aas job Parameter CSRF
|
|
41501
Description:
A-Blog contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'blog.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-02-03
|
A-Blog blog.php id Parameter SQL Injection
|
|
29217
Description:
A-Blog contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to the menu.php script not properly sanitizing user input supplied to the 'navigation_start' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-09-26
|
A-Blog menu.php navigation_start Parameter Remote File Inclusion
|
|
38232
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in A-Blog 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) open_box, (2) middle_box, and (3) close_box parameters in (a) sources/myaccount.php; the (4) navigation_end parameter in (b) navigation/search.php and (c) navigation/donation.php; and the (6) navigation_start and (7) navigation_middle parameters in navigation/donation.php, (d) navigation/latestnews.php, and (e) navigation/links.php; different vectors than CVE-2006-5092.
|
2006-09-27
|
A-Blog navigation/donation.php Multiple Parameter Remote File Inclusion
|
|
38233
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in A-Blog 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) open_box, (2) middle_box, and (3) close_box parameters in (a) sources/myaccount.php; the (4) navigation_end parameter in (b) navigation/search.php and (c) navigation/donation.php; and the (6) navigation_start and (7) navigation_middle parameters in navigation/donation.php, (d) navigation/latestnews.php, and (e) navigation/links.php; different vectors than CVE-2006-5092.
|
2006-09-27
|
A-Blog navigation/latestnews.php Multiple Parameter Remote File Inclusion
|
|
38234
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in A-Blog 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) open_box, (2) middle_box, and (3) close_box parameters in (a) sources/myaccount.php; the (4) navigation_end parameter in (b) navigation/search.php and (c) navigation/donation.php; and the (6) navigation_start and (7) navigation_middle parameters in navigation/donation.php, (d) navigation/latestnews.php, and (e) navigation/links.php; different vectors than CVE-2006-5092.
|
2006-09-27
|
A-Blog navigation/links.php Multiple Parameter Remote File Inclusion
|
|
38231
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in A-Blog 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) open_box, (2) middle_box, and (3) close_box parameters in (a) sources/myaccount.php; the (4) navigation_end parameter in (b) navigation/search.php and (c) navigation/donation.php; and the (6) navigation_start and (7) navigation_middle parameters in navigation/donation.php, (d) navigation/latestnews.php, and (e) navigation/links.php; different vectors than CVE-2006-5092.
|
2006-09-27
|
A-Blog navigation/search.php navigation_end Parameter Remote File Inclusion
|
|
41500
Description:
A-Blog contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'words' parameter upon submission to the 'search.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2008-02-03
|
A-Blog search.php words Parameter XSS
|
|
38230
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in A-Blog 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) open_box, (2) middle_box, and (3) close_box parameters in (a) sources/myaccount.php; the (4) navigation_end parameter in (b) navigation/search.php and (c) navigation/donation.php; and the (6) navigation_start and (7) navigation_middle parameters in navigation/donation.php, (d) navigation/latestnews.php, and (e) navigation/links.php; different vectors than CVE-2006-5092.
|
2006-09-27
|
A-Blog sources/myaccount.php Multiple Parameter Remote File Inclusion
|
|
76203
Description:
A-Blog contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'sources/search.php' script not properly sanitizing user-supplied input to the 'words' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-09-05
|
A-Blog sources/search.php words Parameter SQL Injection
|
|
32402
Description:
a-blog contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate unspecified variables upon submission to an unspecified script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-12-22
|
a-blog Unspecified XSS
|
|
26227
Description:
(Description Provided by CVE) : A-CART 2.0 stores the acart2_0.mdb file under the web document root with insufficient access control, which allows remote attackers to obtain username and password information.
|
2006-06-08
|
A-CART acart2_0.mdb User Credential Remote Disclosure
|
|
4358
Description:
A-CART contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "msg" variable upon submission to the "admin/error.asp" script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-12-03
|
A-CART admin/error.asp msg Parameter XSS
|
|
4359
Description:
A-CART contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "msg" variable upon submission to the "admin/index.asp" script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-12-03
|
A-CART admin/index.asp msg Parameter XSS
|
|
4674
Description:
A-CART contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate certain variables upon submission to the billing.asp script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2004-03-30
|
A-CART billing.asp XSS
|
|
4675
Description:
A-CART contains a flaw that will allow an attacker to inject arbitrary SQL code. The problem is that the catcode variable in the category.asp module is not verified properly and will allow an attacker to inject or manipulate SQL queries.
|
2004-03-30
|
A-CART category.asp catcode Parameter SQL Injection
|
|
4361
Description:
A-CART contains a flaw that allows a remote attacker to delete products or categories in the database. The issue is due to the category.asp script using a weak authentication method for administrative actions. If an attacker calls the category.asp script with specific arguments in conjunction with one of the XSS vulnerabilities found in the software, the attacker could cause the administrator to delete arbitrary products or categories from the database.
|
2003-12-04
|
A-CART category.asp XSS Authentication Bypass
|