Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

2,108 of 14,642 · Page 38/43
9.8
CVE-2017-17605

Consumer Complaints Clone Script 1.0 has SQL Injection via the other-user-profile.php id parameter.

9.8
CVE-2017-17606

Co-work Space Search Script 1.0 has SQL Injection via the /list city parameter.

9.8
CVE-2017-17607

CMS Auditor Website 1.0 has SQL Injection via the PATH_INFO to /news-detail.

9.8
CVE-2017-17608

Child Care Script 1.0 has SQL Injection via the /list city parameter.

9.8
CVE-2017-17609

Chartered Accountant Booking Script 1.0 has SQL Injection via the /service-list city parameter.

9.8
CVE-2017-17610

E-commerce MLM Software 1.0 has SQL Injection via the service_detail.php pid parameter, event_detail.php eventid paramet

9.8
CVE-2017-17611

Doctor Search Script 1.0 has SQL Injection via the /list city parameter.

9.8
CVE-2017-17612

Hot Scripts Clone 3.1 has SQL Injection via the /categories subctid or mctid parameter.

9.8
CVE-2017-17613

Freelance Website Script 2.0.6 has SQL Injection via the jobdetails.php pr_id parameter or the searchbycat_list.php cati

9.8
CVE-2017-17614

Food Order Script 1.0 has SQL Injection via the /list city parameter.

9.8
CVE-2017-17616

Event Search Script 1.0 has SQL Injection via the /event-list city parameter.

9.8
CVE-2017-17617

Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter.

9.8
CVE-2017-17618

Kickstarter Clone Script 2.0 has SQL Injection via the investcalc.php projid parameter.

9.8
CVE-2017-17619

Laundry Booking Script 1.0 has SQL Injection via the /list city parameter.

9.8
CVE-2017-17620

Lawyer Search Script 1.1 has SQL Injection via the /lawyer-list city parameter.

9.8
CVE-2017-17621

Multivendor Penny Auction Clone Script 1.0 has SQL Injection via the PATH_INFO to the /detail URI.

9.8
CVE-2017-17622

Online Exam Test Application Script 1.6 has SQL Injection via the exams.php sort parameter.

9.8
CVE-2017-17623

Opensource Classified Ads Script 3.2 has SQL Injection via the advance_result.php keyword parameter.

9.8
CVE-2017-17624

PHP Multivendor Ecommerce 1.0 has SQL Injection via the single_detail.php sid parameter, or the category.php searchcat o

9.8
CVE-2017-17625

Professional Service Script 1.0 has SQL Injection via the service-list city parameter.

9.8
CVE-2017-17626

Readymade PHP Classified Script 3.3 has SQL Injection via the /categories subctid or mctid parameter.

9.8
CVE-2017-17627

Readymade Video Sharing Script 3.2 has SQL Injection via the single-video-detail.php report_videos array parameter.

9.8
CVE-2017-17628

Responsive Realestate Script 3.2 has SQL Injection via the property-list tbud parameter.

9.8
CVE-2017-17629

Secure E-commerce Script 2.0.1 has SQL Injection via the category.php searchmain or searchcat parameter, or the single_d

9.8
CVE-2017-17630

Yoga Class Script 1.0 has SQL Injection via the /list city parameter.

9.8
CVE-2017-17631

Multireligion Responsive Matrimonial 4.7.2 has SQL Injection via the success-story.php succid parameter.

9.8
CVE-2017-17632

Responsive Events And Movie Ticket Booking Script 3.2.1 has SQL Injection via the findcity.php q parameter.

9.8
CVE-2017-17633

Multiplex Movie Theater Booking Script 3.1.5 has SQL Injection via the trailer-detail.php moid parameter, show-time.php

9.8
CVE-2017-17634

Single Theater Booking Script 3.2.1 has SQL Injection via the findcity.php q parameter.

9.8
CVE-2017-17635

MLM Forex Market Plan Script 2.0.4 has SQL Injection via the news_detail.php newid parameter or the event_detail.php eve

9.8
CVE-2017-17636

MLM Forced Matrix 2.0.9 has SQL Injection via the news-detail.php newid parameter.

9.8
CVE-2017-17637

Car Rental Script 2.0.4 has SQL Injection via the countrycode1.php val parameter.

9.8
CVE-2017-17638

Groupon Clone Script 3.01 has SQL Injection via the city_ajax.php state_id parameter.

9.8
CVE-2017-17639

Muslim Matrimonial Script 3.02 has SQL Injection via the success-story.php succid parameter.

9.8
CVE-2017-17640

Advanced World Database 2.0.5 has SQL Injection via the city.php country or state parameter, or the state.php country pa

9.8
CVE-2017-17641

Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter.

9.8
CVE-2017-17642

Basic Job Site Script 2.0.5 has SQL Injection via the keyword parameter to /job.

9.8
CVE-2017-17648

Entrepreneur Dating Script 2.0.1 has SQL Injection via the search_result.php marital, gender, country, or profileid para

9.8
CVE-2017-17671

vBulletin through 5.3.x on Windows allows remote PHP code execution because a require_once call is reachable with an una

9.8
CVE-2017-17672

In vBulletin through 5.3.x, there is an unauthenticated deserialization vulnerability that leads to arbitrary file delet

9.8
CVE-2017-14101

A security researcher found an XML External Entity (XXE) vulnerability on the Conserus Image Repository archive solution

9.8
CVE-2017-17699

K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025ac DeviceIoControl request

9.8
CVE-2017-17700

K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025a4 DeviceIoControl request

9.8
CVE-2017-17701

K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025c8 DeviceIoControl request

9.8
CVE-2017-10904

Qt for Android prior to 5.9.0 allows remote attackers to execute arbitrary OS commands via unspecified vectors.

9.8
CVE-2017-3184

ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC fail to properly restrict ac

9.8
CVE-2017-3185

ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC have a web application that

9.8
CVE-2017-3186

ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC use non-random default crede

9.8
CVE-2017-3191

D-Link DIR-130 firmware version 1.23 and DIR-330 firmware version 1.12 are vulnerable to authentication bypass of the re

9.8
CVE-2017-3192

D-Link DIR-130 firmware version 1.23 and DIR-330 firmware version 1.12 do not sufficiently protect administrator credent

Scan for 2017 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started