| OSVDB ID | Disclosure Date | Title |
|
48346
Description:
Zen Cart contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the includes/classes/shopping_cart.php script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-09-04
|
Zen Cart includes/classes/shopping_cart.php id Parameter SQL Injection
|
|
47684
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Lussumo Vanilla 1.1.4 and earlier (1) allow remote attackers to inject arbitrary web script or HTML via the NewPassword parameter to people.php, and allow remote authenticated users to inject arbitrary web script or HTML via the (2) Account picture and (3) Icon fields in account.php. NOTE: some of these details are obtained from third party information.
|
2008-08-19
|
Vanilla people.php NewPassword Parameter XSS
|
|
47590
Description:
SunShop Shopping Cart contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the "class.ajax.php" script not properly sanitizing user-supplied input to the "id" and other unspecified parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-08-18
|
SunShop Shopping Cart class.ajax.php Multiple Parameter SQL Injection
|
|
47632
Description:
PHP Live Helper contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'onlinestatus_html.php' script not properly sanitizing user-supplied input to the 'dep' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-08-16
|
PHP Live Helper onlinestatus_html.php dep Parameter SQL Injection
|
|
47613
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Kayako SupportSuite 3.20.02 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the sessionid parameter in a livesupport startclientchat action to visitor/index.php; (2) the filter parameter in a news view action to index.php; or the Full Name field in a (3) account creation, (4) ticket opening, or (5) chat request operation.
|
2008-08-09
|
Kayako SupportSuite visitor/index.php sessionid Parameter XSS
|
|
47482
Description:
A vulnerability exists in the e107 CMS <= 0.7.11 which allows an attacker to overwrite variables used by the application via the $_POST superglobal, due to the unsafe usage of the extract() function call. The impact of this issue varies depending on which variables an attacker chooses to overwrite. Known attacks leveraging this issue includes SQL Injection, and PHP code execution.
|
2008-08-07
|
e107 download.php extract() Function Variable Overwrite
|
|
49125
Description:
Plogger contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'admin/plog-themes.php' script not properly sanitizing user-supplied input to the 'activate' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-08-05
|
Plogger admin/plog-themes.php activate Parameter SQL Injection
|
|
50186
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Pligg 9.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the keyword parameter in a search action to user.php and other unspecified vectors.
|
2008-07-30
|
Pligg user.php keyword Parameter XSS
|
|
50189
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'vote.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg vote.php id Parameter SQL Injection
|
|
50190
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'trackback.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg trackback.php id Parameter SQL Injection
|
|
50191
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'submit.php' script not properly sanitizing user-supplied input to the unspecified parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg submit.php Unspecified SQL Injection
|
|
50192
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'story.php' script not properly sanitizing user-supplied input to the 'requestTitle' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg story.php requestTitle Parameter SQL Injection
|
|
50193
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'recommend.php' script not properly sanitizing user-supplied input to the 'requestID' and 'requestTitle' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg recommend.php Multiple Parameter SQL Injection
|
|
50194
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'cloud.php' script not properly sanitizing user-supplied input to the 'categoryID' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg cloud.php categoryID Parameter SQL Injection
|
|
50195
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'out.php' script not properly sanitizing user-supplied input to the 'title' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg out.php title Parameter SQL Injection
|
|
50196
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'login.php' script not properly sanitizing user-supplied input to the 'username' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg login.php username Parameter SQL Injection
|
|
50197
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'cvote.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg cvote.php id Parameter SQL Injection
|
|
50198
Description:
Pligg contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'edit.php' script not properly sanitizing user-supplied input to the 'commentid' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-30
|
Pligg edit.php commentid Parameter SQL Injection
|
|
47186
Description:
ViArt Shop contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'products_rss.php' script not properly sanitizing user-supplied input to the 'category_id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-28
|
ViArt Shop products_rss.php category_id Parameter SQL Injection
|
|
23596
Description:
Gallery contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'X_FORWARDED_FOR' HTTP header field upon submission to the GalleryUtilities.class script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-03-02
|
Gallery GalleryUtilities.class X_FORWARDED_FOR HTTP Header Field XSS
|
|
23597
Description:
Gallery contains a flaw that allows a remote attacker to delete files outside of the web path. The issue is due to the GallerySession.class not properly sanitizing user input, specifically directory traversal style attacks (../../) supplied via the sessionId variable(s).
|
2006-03-02
|
Gallery Session Handling Class (GallerySession.class) Cookie Traversal Arbitrary File Manipulation
|
|
23349
Description:
Geeklog contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to lib-common.php not properly sanitizing user input supplied to the 'language' variable. This may allow an attacker to read arbitrary local files or include local files which contain arbitrary commands which will be executed by the vulnerable script.
|
2006-02-19
|
Geeklog lib-common.php Local File Inclusion
|
|
23117
Description:
XMB Forums contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'today.php' script not properly sanitizing user-supplied input to the cookies. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-02-12
|
XMB Forums today.php Cookie Data SQL Injection
|
|
23118
Description:
XMB Forums contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the u2u.inc.php script not properly sanitizing user-supplied input to the 'u2u_mod_delete()', 'u2u_mod_move()', and 'u2u_mod_markUnread()' functions. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-02-12
|
XMB Forums u2u.inc.php Multiple Function SQL Injection
|
|
18908
Description:
RunCMS contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'Search Engine' not properly sanitizing user-supplied input to the 'addquery' and 'subquery' variables. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-08-19
|
RunCMS Search Engine Multiple Parameter SQL Injection
|
|
18909
Description:
RunCMS contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'newtopic.php' script not properly sanitizing user-supplied input to the 'forum' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-08-19
|
RunCMS newbb_plus Module newtopic.php forum Parameter SQL Injection
|
|
18910
Description:
RunCMS contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'edit.php' script not properly sanitizing user-supplied input to the 'forum' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-08-19
|
RunCMS newbb_plus Module edit.php forum Parameter SQL Injection
|
|
18911
Description:
RunCMS contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'reply.php' script not properly sanitizing user-supplied input to the 'forum' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-08-19
|
RunCMS newbb_plus Module reply.php forum Parameter SQL Injection
|
|
18912
Description:
RunCMS contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'print.php' script not properly sanitizing user-supplied input to the 'msg_id' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-08-19
|
RunCMS Messages Module print.php msg_id Parameter SQL Injection
|
|
18400
Description:
MySQL Eventum contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'id' variable upon submission to the 'view.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-07-31
|
MySQL Eventum view.php id Parameter XSS
|
|
18401
Description:
MySQL Eventum contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'release' variable upon submission to the 'list.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-07-31
|
MySQL Eventum list.php release Parameter XSS
|
|
18402
Description:
MySQL Eventum contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'F' variable upon submission to the 'get_jsrs_data.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-07-31
|
MySQL Eventum get_jsrs_data.php F Parameter XSS
|
|
18403
Description:
MySQL Eventum contains a flaw that may allow a remote attacker to carry out an SQL injection attack and bypass authentication settings. The issue is due to the 'login.php' script not properly sanitizing user-supplied input to the 'email' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database to bypass authentication.
|
2005-07-31
|
MySQL Eventum login.php email Parameter SQL Injection Authentication Bypass
|
|
18404
Description:
MySQL Eventum contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'custom_fields.php' script not properly sanitizing user-supplied input to the report class. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-07-31
|
MySQL Eventum custom_fields.php SQL Injection
|
|
18405
Description:
MySQL Eventum contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'custom_fields_graph.php' script not properly sanitizing user-supplied input to the report class. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-07-31
|
MySQL Eventum custom_fields_graph.php SQL Injection
|
|
18406
Description:
MySQL Eventum contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'releases.php' script not properly sanitizing user-supplied input to the release class. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-07-31
|
MySQL Eventum releases.php SQL Injection
|
|
18395
Description:
Kayako LiveResponse contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'username' variable upon submission to the index.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity and confidentiality
|
2005-07-30
|
Kayako LiveResponse index.php username Parameter XSS
|
|
18396
Description:
Kayako LiveResponse contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'year' or 'date' variables in the calendar feature. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-07-30
|
Kayako LiveResponse index.php Calendar Feature Multiple Parameter SQL Injection
|
|
18397
Description:
Kayako LiveResponse contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue exists because the application does not sanitize the user's input when entering a session or sending a message to the support staff. A malicious user may input arbitrary code which will be executed in the context of the support staff browser. This flaw may lead to a loss of confidentiality, integrity and availability.
|
2005-07-30
|
Kayako LiveResponse Unspecified Script Injection Privilege Escalation
|
|
18398
Description:
Kayako LiveResponse contains a flaw that may lead to an unauthorized password exposure. The passwords are sent in plain text in the URL when logging into the application, which may lead to a loss of confidentiality.
|
2005-07-30
|
Kayako LiveResponse index.php Cleartext Password Disclosure
|