Vulnerability index

Browse CVEs

22 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Minibloggie MEDIUM 5.0
CVE-2008-6650

del.php in miniBloggie 1.0 allows remote attackers to delete arbitrary posts via a direct request with a modified post_id parameter, a different vuln…

No fix yet
Fix from $1,600 2009-04-07
Bloggie Lite HIGH 7.5
CVE-2008-5004

SQL injection vulnerability in genscode.php in myWebland Bloggie Lite 0.0.2 beta allows remote attackers to execute arbitrary SQL commands via a craf…

No fix yet
Fix from $1,950 2008-11-10
Myevent HIGH 7.5
CVE-2008-4650

SQL injection vulnerability in viewevent.php in myEvent 1.6 allows remote attackers to execute arbitrary SQL commands via the eventdate parameter.

No fix yet
Fix from $1,950 2008-10-22
Mystats HIGH 7.5
CVE-2008-4643

SQL injection vulnerability in hits.php in myWebland myStats allows remote attackers to execute arbitrary SQL commands via the sortby parameter.

No fix yet
Fix from $1,950 2008-10-22
Mystats HIGH 7.5
CVE-2008-4644

hits.php in myWebland myStats allows remote attackers to bypass IP address restrictions via a modified X-Forwarded-For HTTP header.

No fix yet
Fix from $1,950 2008-10-22
Minibloggie HIGH 7.5
CVE-2008-4628

SQL injection vulnerability in del.php in myWebland miniBloggie 1.0 allows remote attackers to execute arbitrary SQL commands via the post_id paramet…

No fix yet
Fix from $1,950 2008-10-21
Mybloggie MEDIUM 5.3
CVE-2007-3650

myWebland myBloggie 2.1.6 allow remote attackers to obtain sensitive information via (1) an invalid year parameter to calendar.php, reached through i…

No fix yet
Fix from $1,600 2008-07-09
Mybloggie MEDIUM 5.1
CVE-2007-1899

Multiple SQL injection vulnerabilities in myWebland myBloggie 2.1.6 allow remote attackers to execute arbitrary SQL commands via (1) the user_id para…

No fix yet
Fix from $1,600 2008-07-09
Mybloggie MEDIUM 5.1
CVE-2008-3080

Cross-site request forgery (CSRF) vulnerability in admin.php in myWebland myBloggie 2.1.6 allows remote attackers to perform edit actions as administ…

No fix yet
Fix from $1,600 2008-07-09
Myevent HIGH 7.5
CVE-2007-3353

PHP remote file inclusion vulnerability in includes/template.php in MyEvent 1.6 allows remote attackers to execute arbitrary PHP code via a URL in th…

Mitigation only
Fix from $1,950 2007-06-22
Mybloggie CRITICAL 9.8
CVE-2007-3194

Multiple PHP remote file inclusion vulnerabilities in myBloggie 2.1.5 allow remote attackers to execute arbitrary PHP code via a URL in the bloggie_r…

Mitigation only
Fix from $2,300 2007-06-12
Mybloggie MEDIUM 6.8
CVE-2007-0353

Cross-site scripting (XSS) vulnerability in (1) index.php and (2) login.php in myBloggie 2.1.5 allows remote attackers to inject arbitrary web script…

No fix yet
Fix from $1,600 2007-01-19
Myevent HIGH 7.5
CVE-2006-4083

PHP remote file inclusion vulnerability in viewevent.php in myWebland myEvent 1.x allows remote attackers to execute arbitrary PHP code via a URL in …

Mitigation only
Fix from $1,950 2006-08-11
Mybloggie HIGH 7.5
CVE-2006-3905

SQL injection vulnerability in Webland MyBloggie 2.1.3 allows remote attackers to execute arbitrary SQL commands via the (1) post_id parameter in ind…

No fix yet
Fix from $1,950 2006-07-27
Mybloggie MEDIUM 5.8
CVE-2006-3903

CRLF injection vulnerability in (1) index.php and (2) admin.php in myWebland MyBloggie 2.1.3 allows remote attackers to hijack sessions and conduct c…

No fix yet
Fix from $1,600 2006-07-27
Mybloggie HIGH 7.5
CVE-2006-2859

PHP remote file inclusion vulnerability in MyBloggie 2.1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the myblogg…

No fix yet
Fix from $1,950 2006-06-06
Myevent HIGH 7.5
CVE-2006-1890

Multiple PHP remote file inclusion vulnerabilities in myWebland myEvent 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the mye…

No fix yet
Fix from $1,950 2006-04-20
Mybloggie HIGH 7.5
CVE-2005-4225

Multiple "potential" SQL injection vulnerabilities in myBloggie 2.1.3 beta might allow remote attackers to execute arbitrary SQL commands via (1) the…

Mitigation only
Fix from $1,950 2005-12-14
Mybloggie HIGH 7.5
CVE-2005-3153

login.php in myBloggie 2.1.3 beta and earlier allows remote attackers to bypass a whitelist regular expression and conduct SQL injection attacks via …

No fix yet
Fix from $1,950 2005-10-05
Mybloggie HIGH 7.5
CVE-2005-1499

delcomment.php in myBloggie 2.1.1 allows remote attackers to delete arbitrary comments by modifying the comment_id parameter.

No fix yet
Fix from $1,950 2005-05-11
Mybloggie HIGH 7.5
CVE-2005-1500

Multiple SQL injection vulnerabilities in myBloggie 2.1.1 allow remote attackers to execute arbitrary SQL commands via (1) the keyword parameter in s…

No fix yet
Fix from $1,950 2005-05-11
Mybloggie MEDIUM 5.0
CVE-2005-1497

index.php in myBloggie 2.1.1 allows remote attackers to obtain sensitive information via an invalid post_id parameter, which reveals the path in an e…

Mitigation only
Fix from $1,600 2005-05-11