A vulnerability was found in Technote 7.2. It has been rated as critical. Affected by this issue is some unknown functionality of the file skin_shop/standard/2_view_body/body_default.php. The manipulation of the argument shop_this_skin_path leads to code injection.
This vulnerability is handled as CVE-2009-0441. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, was found in Dreampics Gallery Builder. Affected is an unknown function of the file index.php. The manipulation of the argument exhibition_id leads to sql injection.
This vulnerability is traded as CVE-2009-0445. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in 4Site 4Site CMS up to 2.6. Affected by this issue is some unknown functionality of the file pcgi/4site.pl of the component Login. The manipulation of the argument th leads to sql injection.
This vulnerability is handled as CVE-2009-0646. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.
A vulnerability was found in Aspindir MyDesign Sayac 2.0 and classified as critical. Affected by this issue is some unknown functionality of the file default.asp. The manipulation of the argument pass leads to sql injection.
This vulnerability is handled as CVE-2009-0447. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in Multimediasoft Audio Dj Studio For .net. It has been classified as very critical. This affects an unknown part in the library AdjMmsEng.dll. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2009-0476. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability has been found in Web-album WEBalbum 2.4b and classified as critical. Affected by this vulnerability is an unknown functionality of the file photo.php. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2009-0446. The attack can be launched remotely. Furthermore, there is an exploit available.
上个月《华尔街日报》报道称中国黑客入侵了美国的电信基础设施,本周《华盛顿邮报》和《纽约时报》公布了更多信息。黑客组织被称为 Salt Typhoon,他们能利用美国执法机构在电信基础设施中设置的后门去监听电话和阅读短信。黑客无法监听加密的内容,意味着支持端对端加密的应用如 Signal 和苹果的 iMessage 可能不受影响,但苹果设备和 Android 设备之间的短消息使用的端到端加密方式不同,可能容易被 Salt Typhoon 拦截。
A vulnerability, which was classified as problematic, was found in Jbmc-software DirectAdmin up to 1.292. Affected is an unknown function. The manipulation of the argument view=advanced leads to cross site scripting.
This vulnerability is traded as CVE-2009-2216. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A new malicious campaign is using a legitimate but old and vulnerable Avast Anti-Rootkit driver to evade detection and take control of the target system by disabling security components. [...]
A vulnerability was found in code-projects Simple Car Rental System 1.0. It has been classified as critical. Affected is an unknown function of the file /book_car.php. The manipulation of the argument fname/id_no/gender/email/phone/location leads to sql injection.
This vulnerability is traded as CVE-2024-11632. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The initial researcher advisory only mentions the parameter "fname" to be affected. Further analysis indicates that other arguments might be affected as well.
A vulnerability, which was classified as problematic, has been found in Onlinegrades Online Grades 3.2.4. Affected by this issue is the function phpinfo of the file phpinfo.php. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2009-0453. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in ClickTech ClickCart 6.0. This vulnerability affects unknown code of the file customer_login_check.asp. The manipulation of the argument txtPassword leads to sql injection.
This vulnerability was named CVE-2009-0462. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.
A vulnerability, which was classified as critical, was found in Groonesworld GBook 2.0. Affected is an unknown function of the file includes/header.php. The manipulation of the argument abspath leads to code injection.
This vulnerability is traded as CVE-2009-0464. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in Onlinegrades Online Grades 3.2.4. Affected by this vulnerability is an unknown functionality of the file parents/login.php. The manipulation of the argument pass leads to sql injection.
This vulnerability is known as CVE-2009-0452. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in Groonesworld GLinks 2.1. This issue affects some unknown processing. The manipulation of the argument abspath leads to code injection.
The identification of this vulnerability is CVE-2009-0463. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability was found in Linux Kernel. It has been classified as critical. Affected is the function compat_sys_recvmmsg. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2014-0038. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in DataGear up to 4.60. It has been declared as critical. This vulnerability affects unknown code of the file /dataSet/resolveSql. The manipulation of the argument sql leads to sql injection.
This vulnerability was named CVE-2023-7299. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.