E-lokaler CMS suffers from a remote SQL injection vulnerability that allows for authentication bypass.
d171262c1e9ac034d6deaebcfbde39c09dc6772753256d7b2b8690fef4df521e
DownGroup Web Solution suffers from a remote SQL injection vulnerability in dynamic.php.
d4fb75c17b5e0dfa3c71e97dcdf3edaad907a383676798c96420eb97ace333b7
This code demonstrates a local privilege escalation vulnerability in systemtap.
fd7691a08020e68fc8cc7b5dd46bd1790de570b5d43ecd78597ce5d6e5cb8cad
Cisco Clientless SSL VPN (Secure Desktop) can be misconfigured when disabling the portal toolbar. The Portal toolbar is independent from filtering the actual browser requests. This means that all URL's and plugins are by default allowed even if the administrator only chooses to publish a few bookmarks to key systems where users should have access. This may lead to the possibility of giving unintended access to other systems behind the ASA.
4eb5734d29ebe15392aa7223640755c5c16effc9c7c936299c63698ecdfb737e
Voxpopulime CMS suffers from a remote SQL injection vulnerability.
61ef4a32c225542f0d7471a11e73379f3fd6b0e0f1c781a684bdc68c6b4a1290
C&PR Studio suffers from a remote SQL injection vulnerability.
e96f0803fcc7467a8242dbbcf6b5b4590c9583af18b37478ad8b837114f2d469
MemHT Portal version 4.0.1 suffers from a persistent cross site scripting vulnerability.
ac982b82d84e75d367b151d22284e82678001b1b73c9dcc8020c731a04e90f7c
Jurpopage version 0.2.0 suffers from a remote SQL injection vulnerability.
03accd2ee416520faedaabc72df452295bf019717597f9f03fcc41b139b25d3d
An off by one in the library libgs.so.8 shipped with Ghostscript in versions 8.70 and below generates an integer overflow, which in turn produces a heap corruption, resulting in a (remote) Denial of Service (crash) in several applications using this library when processing a specially crafted font. This vulnerability cannot be exploited to execute arbitrary code under GNU/Linux x86, to the best of our knowledge. Other targets, in particular Windows have not been tested and may or may not allow execution of arbitrary code.
755fd7b7a65fa02c1e386560dc92962392c8ed6130056fd4ed24925a54f7de7c
GeneralProducts suffers from a local file inclusion vulnerability.
b40c1d5635ae2f3249d289c134071795022442c0864ab619f01333f81269088d
Register Plus for WordPress suffers from cross site scripting and path disclosure vulnerabilities.
04d6618ec30a47056faa5ab27cb87bdabce6407fa5f8f0d7f0a8a663fe3c09c9
PHP Trainers suffers from a remote SQL injection vulnerability.
6d763ea784b72e8b42ea55b3c90358b1bdba5661f883a00b2c8ba870de2fa641
FreeTicket version 1.0.0 suffers from remote SQL injection vulnerabilities.
5e354aeaad34e9da3e4fcf4b5c3376d8093f1109014c0610f21c7d46f12b934a
PHP Place suffers from a remote SQL injection vulnerability.
33322065ea24d1e448ae8330b72b7d41b545cc574f2dd397abdb9f3a087ba242
Wolf CMS version 0.6.0b suffers from cross site request forgery and cross site scripting vulnerabilities.
450784b6d8da630024552f03f5f9bd18cf20cf2e0c4545dd6e9c1bdb2a05abaf
Glenovation suffers from a remote SQL injection vulnerability.
1a2e9e3db626ea03a2c8f5ef33311793c9d39a433d03ff40479ba5e526aa233e
An open redirect vulnerability exists in Oracle I-Recruitment versions 11.5.10.2, 12.0.6 and 12.1.3.
633bf317c0fc0f479ad1d4d5f83258a4498b718ecae4518ec400a056c5a552bc
This OWASP HTTP Post denial of service tool was created for testing web applications for availability concerns from HTTP GET and HTTP POST denial of service attacks.
a1be65a2e180114a51ec0b5aec453b5276d0e3c5844a6ec4e6fcb27016250752
JDownloader Webinterface suffers from a remote source code disclosure vulnerability.
2dd94294d6b03b5de3926478d579094535be5e5c60b24e2150aa0f9441ece086
The Joomla JE Ajax Event Calendar component suffers from a remote SQL injection vulnerability.
fd03b696bdb29bd73df3f9ee823b0dbe4d6d4cdd928223c1df82a4068b4523bf
NCH Officeintercom versions 5.20 and below suffer from a remote denial of service vulnerability.
0349fd7fada5cbd742c13d7e903d7459e061ee4eda5152e3d6d7ba0d7ac4379d
Whitepaper called Pwning the BSNL Users.
4b22e4e33ddefc12559ed84d9659f1017723993f24e80a133e95b05bdb4ed88f
jSchool Advanced suffers from a cross site scripting vulnerability.
f20e62d7c06bc1e666526c6b77d65b67caec74a34979725689f573eddaadd9c2
CMS Article suffers from a remote SQL injection vulnerability.
c1b438b41fbf0ec385663aed8362646bb2b52c60669a1263eb38f4d0676e8c4d
Microsoft Windows task scheduler privilege escalation exploit.
bca5b384d4ee263828f222a4b6f60e975a131a639b63689c25912cab251c49d9