Vulnerability index

Browse CVEs

24 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Absolute Faq Manager .net HIGH 7.5
CVE-2008-6854

Xigla Software Absolute FAQ Manager.NET 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a …

No fix yet
Fix from $1,950 2009-07-14
Absolute News Feed HIGH 7.5
CVE-2008-6855

Xigla Software Absolute News Feed 1.0 and possibly 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a c…

No fix yet
Fix from $1,950 2009-07-14
Absolute News Manager.net HIGH 7.5
CVE-2008-6856

Xigla Software Absolute News Manager.NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a…

No fix yet
Fix from $1,950 2009-07-14
Absolute Podcast.net HIGH 7.5
CVE-2008-6857

Absolute Podcast .NET 1.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.

No fix yet
Fix from $1,950 2009-07-14
Absolute Banner Manager.net HIGH 7.5
CVE-2008-6858

Absolute Banner Manager .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain val…

No fix yet
Fix from $1,950 2009-07-14
Absolute Control Panel Xe HIGH 7.5
CVE-2008-6859

Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a…

No fix yet
Fix from $1,950 2009-07-14
Absolute Poll Manager Xe HIGH 7.5
CVE-2008-6860

Xigla Software Absolute Poll Manager XE 4.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a …

No fix yet
Fix from $1,950 2009-07-14
Absolute Newsletter HIGH 7.5
CVE-2008-6861

Xigla Software Absolute Newsletter 6.0 and 6.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to…

No fix yet
Fix from $1,950 2009-07-14
Absolute Content Rotator HIGH 7.5
CVE-2008-6862

Absolute Content Rotator 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.

No fix yet
Fix from $1,950 2009-07-14
Absolute Form Processor.net HIGH 7.5
CVE-2008-6863

Xigla Software Absolute Form Processor .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie t…

No fix yet
Fix from $1,950 2009-07-14
Absolute Live Support .net HIGH 7.5
CVE-2008-6864

Xigla Software Absolute Live Support .NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to …

No fix yet
Fix from $1,950 2009-07-14
Absolute Control Panel Xe HIGH 7.5
CVE-2009-1504

Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin cookie to "…

No fix yet
Fix from $1,950 2009-05-01
Absolute Poll Manager Xe HIGH 7.5
CVE-2008-4569

SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to execute arbitrary SQL comman…

No fix yet
Fix from $1,950 2008-10-15
Absolute Image Gallery Xe HIGH 7.5
CVE-2008-2765

SQL injection vulnerability in gallery.asp in Xigla Absolute Image Gallery XE allows remote attackers to execute arbitrary SQL commands via the categ…

No fix yet
Fix from $1,950 2008-06-18
Absolute News Manager Xe MEDIUM 6.5
CVE-2008-2757

SQL injection vulnerability in search.asp in Xigla Absolute News Manager XE 3.2 allows remote authenticated administrators to execute arbitrary SQL c…

No fix yet
Fix from $1,600 2008-06-18
Absolute Banner Manager MEDIUM 6.5
CVE-2008-2760

SQL injection vulnerability in searchbanners.asp in Xigla Absolute Banner Manager XE 2.0 allows remote authenticated administrators to execute arbitr…

No fix yet
Fix from $1,600 2008-06-18
Absolute Form Processor Xe MEDIUM 6.5
CVE-2008-2762

SQL injection vulnerability in search.asp in Xigla Absolute Form Processor XE 4.0 allows remote authenticated administrators to execute arbitrary SQL…

No fix yet
Fix from $1,600 2008-06-18
Absolute Live Support Xe MEDIUM 6.5
CVE-2008-2763

SQL injection vulnerability in search.asp in Xigla Absolute Live Support XE 5.1 allows remote authenticated administrators to execute arbitrary SQL c…

No fix yet
Fix from $1,600 2008-06-18
Absolute Poll Manager Xe MEDIUM 6.5
CVE-2008-2767

SQL injection vulnerability in search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to execute ar…

No fix yet
Fix from $1,600 2008-06-18
Absolute Banner Manager.net HIGH 7.5
CVE-2007-6291

SQL injection vulnerability in abm.aspx in Xigla Absolute Banner Manager .NET 4.0 allows remote attackers to execute arbitrary SQL commands via the z…

Mitigation only
Fix from $1,950 2007-12-10
Absolute News Manager.net HIGH 7.5
CVE-2007-6269

Multiple SQL injection vulnerabilities in xlaabsolutenm.aspx in Absolute News Manager.NET 5.1 allow remote attackers to execute arbitrary SQL command…

Patch available
Fix from $1,950 2007-12-07
Absolute News Manager.net MEDIUM 5.0
CVE-2007-6268EPSS 8%

Directory traversal vulnerability in pages/default.aspx in Absolute News Manager.NET 5.1 allows remote attackers to read arbitrary files via a .. (do…

Patch available
Fix from $1,600 2007-12-07
Absolute News Manager.net MEDIUM 5.0
CVE-2007-6271

Absolute News Manager.NET 5.1 allows remote attackers to obtain sensitive information via a direct request to getpath.aspx, which reveals the install…

Patch available
Fix from $1,600 2007-12-07
Absolute Image Gallery Xe HIGH 7.5
CVE-2007-1469

SQL injection vulnerability in gallery.asp in Absolute Image Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the categoryid…

No fix yet
Fix from $1,950 2007-03-16