Vulnerability index

Browse CVEs

22 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2008-6650 del.php in miniBloggie 1.0 allows remote attackers to delete arbitrary posts via a direct request with a modified post_id parameter, a different vuln… Minibloggie No fix yet Fix from $1,6002009-04-07 HIGH 7.5 CVE-2008-5004 SQL injection vulnerability in genscode.php in myWebland Bloggie Lite 0.0.2 beta allows remote attackers to execute arbitrary SQL commands via a craf… Bloggie Lite No fix yet Fix from $1,9502008-11-10 HIGH 7.5 CVE-2008-4650 SQL injection vulnerability in viewevent.php in myEvent 1.6 allows remote attackers to execute arbitrary SQL commands via the eventdate parameter. Myevent No fix yet Fix from $1,9502008-10-22 HIGH 7.5 CVE-2008-4643 SQL injection vulnerability in hits.php in myWebland myStats allows remote attackers to execute arbitrary SQL commands via the sortby parameter. Mystats No fix yet Fix from $1,9502008-10-22 HIGH 7.5 CVE-2008-4644 hits.php in myWebland myStats allows remote attackers to bypass IP address restrictions via a modified X-Forwarded-For HTTP header. Mystats No fix yet Fix from $1,9502008-10-22 HIGH 7.5 CVE-2008-4628 SQL injection vulnerability in del.php in myWebland miniBloggie 1.0 allows remote attackers to execute arbitrary SQL commands via the post_id paramet… Minibloggie No fix yet Fix from $1,9502008-10-21 MEDIUM 5.3 CVE-2007-3650 myWebland myBloggie 2.1.6 allow remote attackers to obtain sensitive information via (1) an invalid year parameter to calendar.php, reached through i… Mybloggie No fix yet Fix from $1,6002008-07-09 MEDIUM 5.1 CVE-2007-1899 Multiple SQL injection vulnerabilities in myWebland myBloggie 2.1.6 allow remote attackers to execute arbitrary SQL commands via (1) the user_id para… Mybloggie No fix yet Fix from $1,6002008-07-09 MEDIUM 5.1 CVE-2008-3080 Cross-site request forgery (CSRF) vulnerability in admin.php in myWebland myBloggie 2.1.6 allows remote attackers to perform edit actions as administ… Mybloggie No fix yet Fix from $1,6002008-07-09 HIGH 7.5 CVE-2007-3353 PHP remote file inclusion vulnerability in includes/template.php in MyEvent 1.6 allows remote attackers to execute arbitrary PHP code via a URL in th… Myevent Mitigation only Fix from $1,9502007-06-22 CRITICAL 9.8 CVE-2007-3194 Multiple PHP remote file inclusion vulnerabilities in myBloggie 2.1.5 allow remote attackers to execute arbitrary PHP code via a URL in the bloggie_r… Mybloggie Mitigation only Fix from $2,3002007-06-12 MEDIUM 6.8 CVE-2007-0353 Cross-site scripting (XSS) vulnerability in (1) index.php and (2) login.php in myBloggie 2.1.5 allows remote attackers to inject arbitrary web script… Mybloggie No fix yet Fix from $1,6002007-01-19 HIGH 7.5 CVE-2006-4083 PHP remote file inclusion vulnerability in viewevent.php in myWebland myEvent 1.x allows remote attackers to execute arbitrary PHP code via a URL in … Myevent Mitigation only Fix from $1,9502006-08-11 HIGH 7.5 CVE-2006-3905 SQL injection vulnerability in Webland MyBloggie 2.1.3 allows remote attackers to execute arbitrary SQL commands via the (1) post_id parameter in ind… Mybloggie No fix yet Fix from $1,9502006-07-27 MEDIUM 5.8 CVE-2006-3903 CRLF injection vulnerability in (1) index.php and (2) admin.php in myWebland MyBloggie 2.1.3 allows remote attackers to hijack sessions and conduct c… Mybloggie No fix yet Fix from $1,6002006-07-27 HIGH 7.5 CVE-2006-2859 PHP remote file inclusion vulnerability in MyBloggie 2.1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the myblogg… Mybloggie No fix yet Fix from $1,9502006-06-06 HIGH 7.5 CVE-2006-1890 Multiple PHP remote file inclusion vulnerabilities in myWebland myEvent 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the mye… Myevent No fix yet Fix from $1,9502006-04-20 HIGH 7.5 CVE-2005-4225 Multiple "potential" SQL injection vulnerabilities in myBloggie 2.1.3 beta might allow remote attackers to execute arbitrary SQL commands via (1) the… Mybloggie Mitigation only Fix from $1,9502005-12-14 HIGH 7.5 CVE-2005-3153 login.php in myBloggie 2.1.3 beta and earlier allows remote attackers to bypass a whitelist regular expression and conduct SQL injection attacks via … Mybloggie No fix yet Fix from $1,9502005-10-05 HIGH 7.5 CVE-2005-1499 delcomment.php in myBloggie 2.1.1 allows remote attackers to delete arbitrary comments by modifying the comment_id parameter. Mybloggie No fix yet Fix from $1,9502005-05-11 HIGH 7.5 CVE-2005-1500 Multiple SQL injection vulnerabilities in myBloggie 2.1.1 allow remote attackers to execute arbitrary SQL commands via (1) the keyword parameter in s… Mybloggie No fix yet Fix from $1,9502005-05-11 MEDIUM 5.0 CVE-2005-1497 index.php in myBloggie 2.1.1 allows remote attackers to obtain sensitive information via an invalid post_id parameter, which reveals the path in an e… Mybloggie Mitigation only Fix from $1,6002005-05-11