Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

5,732 results · Page 39/115
7.5
CVE-2009-1582

Million Dollar Text Links 1.0 does not properly restrict administrator access to admin.home.php, which allows remote att

7.5
CVE-2009-1587

index.php in PHP Site Lock 2.0 allows remote attackers to bypass authentication and obtain administrative access by sett

7.5
CVE-2009-1603

src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generat

7.5
CVE-2009-1604

Unspecified vulnerability in LimeSurvey before 1.82 allows remote attackers to execute commands and obtain sensitive dat

7.5
CVE-2009-1610

admin/changepassword.php in Job Script Job Board Software 2.0 allows remote attackers to change the administrator passwo

7.5
CVE-2008-6803

SQL injection vulnerability in diziler.asp in Yigit Aybuga Dizi Portali allows remote attackers to execute arbitrary SQL

7.5
CVE-2008-6804

Tribiq CMS 5.0.9a beta allows remote attackers to bypass authentication and gain administrative access by setting the CO

7.5
CVE-2008-6807

PHP remote file inclusion vulnerability in ListRecords.php in osprey 1.0a4.1 allows remote attackers to execute arbitrar

7.5
CVE-2008-6808

SQL injection vulnerability in links.php in Scripts for Sites (SFS) EZ Link Directory allows remote attackers to execute

7.5
CVE-2009-1617

Teraway LinkTracker 1.0 allows remote attackers to bypass authentication and gain administrative access via a userid=1&l

7.5
CVE-2009-1618

Teraway LiveHelp 2.0 allows remote attackers to bypass authentication and gain administrative access via a pwd=&lvl=1&us

7.5
CVE-2009-1619

Teraway FileStream 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the tw

7.5
CVE-2009-1622

SQL injection vulnerability in user.php in EcShop 2.5.0 allows remote attackers to execute arbitrary SQL commands via th

7.5
CVE-2009-1626

SQL injection vulnerability in public/specific.php in EZ-Blog before Beta 2 20090427, when magic_quotes_gpc is disabled,

7.5
CVE-2009-0152

iChat in Apple Mac OS X 10.5 before 10.5.7 disables SSL for AOL Instant Messenger (AIM) communication in certain circums

7.5
CVE-2009-1465

Application Access Server (A-A-S) 2.0.48 has "wildbat" as its default password for the admin account, which makes it eas

7.5
CVE-2009-0688

Multiple buffer overflows in the CMU Cyrus SASL library before 2.1.23 might allow remote attackers to execute arbitrary

7.5
CVE-2009-1638

Techno Dreams Job Career Package 3.0 allows remote attackers to bypass authentication and obtain administrative access b

7.5
CVE-2009-1649

Directory traversal vulnerability in arch.php in beLive 0.2.3 allows remote attackers to read arbitrary files via a .. (

7.5
CVE-2009-1650

Multiple SQL injection vulnerabilities in photos.php in Shutter 0.1.1 allow remote attackers to execute arbitrary SQL co

7.5
CVE-2009-1651

SQL injection vulnerability in admin/member_details.php in 2daybiz Business Community Script allows remote attackers to

7.5
CVE-2009-1652

admin/adminaddeditdetails.php in Business Community Script does not properly restrict access, which allows remote attack

7.5
CVE-2008-6809

SQL injection vulnerability in hotel_habitaciones.php in Venalsur Booking Centre Booking System for Hotels Group 2.01 al

7.5
CVE-2008-6810

Multiple SQL injection vulnerabilities in admin/checklogin.php in Venalsur Booking Centre Booking System for Hotels Grou

7.5
CVE-2009-1657

Multiple SQL injection vulnerabilities in the Starrating plugin before 0.7.7 for b2evolution allow remote attackers to e

7.5
CVE-2009-1658

Multiple SQL injection vulnerabilities in admin/admin.php in Realty Webware Technologies Realty Web-Base 1.0 allow remot

7.5
CVE-2009-1662

Multiple SQL injection vulnerabilities in admin/login.php in Wright Way Services Recipe Script 5 allow remote attackers

7.5
CVE-2009-1664

myaccount.php in Easy Scripts Answer and Question Script does not verify the original password before changing passwords

7.5
CVE-2009-1670

user/index.php in TCPDB 3.8 does not require administrative authentication, which allows remote attackers to add admin a

7.5
CVE-2009-1678

Directory traversal vulnerability in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and earlier all

7.5
CVE-2009-1731

SQL injection vulnerability in panel/index.php in MLFFAT 2.1 allows remote attackers to execute arbitrary SQL commands v

7.5
CVE-2009-1734

SQL injection vulnerability in listing_video.php in VidSharePro allows remote attackers to execute arbitrary SQL command

7.5
CVE-2009-1736

SQL injection vulnerability in the GridSupport (GS) Ticket System (com_gsticketsystem) component for Joomla! allows remo

7.5
CVE-2009-1739

PAD Site Scripts 3.6 allows remote attackers to bypass authentication and gain privileges as other users, including admi

7.5
CVE-2009-1742

code.php in PC4Arb Pc4 Uploader 9.0 and earlier makes it easier for remote attackers to conduct SQL injection attacks vi

7.5
CVE-2009-1594

Armorlogic Profense Web Application Firewall before 2.2.22, and 2.4.x before 2.4.4, does not properly implement the "pos

7.5
CVE-2009-1746

SQL injection vulnerability in berita.php in Dian Gemilang DGNews 3.0 Beta allows remote attackers to execute arbitrary

7.5
CVE-2008-6812

SQL injection vulnerability in bukutamu.php in phpWebNews 0.2 MySQL Edition allows remote attackers to execute arbitrary

7.5
CVE-2008-6813

SQL injection vulnerability in index.php in phpWebNews 0.2 MySQL Edition allows remote attackers to execute arbitrary SQ

7.5
CVE-2009-1747

SQL injection vulnerability in index.php in 26th Avenue bSpeak 1.10 allows remote attackers to execute arbitrary SQL com

7.5
CVE-2009-1748

Multiple directory traversal vulnerabilities in index.php in Catviz 0.4.0 Beta 1 allow remote attackers to read arbitrar

7.5
CVE-2009-1751

SQL injection vulnerability in list_list.php in Realty Webware Technologies Web-Base 1.0 allows remote attackers to exec

7.5
CVE-2009-1752

exJune Office Message System 1 does not properly restrict access to (1) configure.asp and (2) addmessage2.asp, which all

7.5
CVE-2009-1764

SQL injection vulnerability in inc/ajax.asp in MaxCMS 2.0 allows remote attackers to execute arbitrary SQL commands via

7.5
CVE-2009-1770

Directory traversal vulnerability in includes/database/examples/addressbook.php in Flyspeck CMS 6.8 allows remote attack

7.5
CVE-2009-1771

index.php in Flyspeck CMS 6.8 does not require administrative authentication for the updateExistingContent action, which

7.5
CVE-2009-1779

PHP remote file inclusion vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to

7.5
CVE-2009-1780

admin.php in Frax.dk Php Recommend 1.3 and earlier does not require authentication when the user password is changed, wh

7.5
CVE-2009-1781

Static code injection vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to inj

7.5
CVE-2009-1634

The WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 does not properly implement sessi

Scan for 2009 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started