Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: languages Clear
ID Title
CVE-2017-17900 SQL Injection in sqli (CVE-2017-17900)
SQL injection in sqli (CVE-2017-17900). Successful exploitation can lead to full system takeover.
CVE-2017-17906 PHP Scripts Mall Car Rental Script has SQL Injection via the admin/carlistedit.php carid parameter.
PHP Scripts Mall Car Rental Script has SQL Injection via the admin/carlistedit.php carid parameter.
CVE-2017-17928 SQL Injection in sqli (CVE-2017-17928)
SQL injection in sqli (CVE-2017-17928). Successful exploitation can lead to full system takeover.
CVE-2017-17931 PHP Scripts Mall Resume Clone Script has SQL Injection via the forget.php username parameter.
PHP Scripts Mall Resume Clone Script has SQL Injection via the forget.php username parameter.
CVE-2017-17892 SQL Injection in sqli (CVE-2017-17892)
SQL injection in sqli (CVE-2017-17892). Successful exploitation can lead to full system takeover.
CVE-2017-17897 SQL Injection in sqli (CVE-2017-17897)
SQL injection in sqli (CVE-2017-17897). Successful exploitation can lead to full system takeover.
CVE-2017-17899 SQL Injection in sqli (CVE-2017-17899)
SQL injection in sqli (CVE-2017-17899). Successful exploitation can lead to full system takeover.
CVE-2017-17873 Vanguard Marketplace Digital Products PHP 1.4 has SQL Injection via the PATH_INFO to the /p URI.
Vanguard Marketplace Digital Products PHP 1.4 has SQL Injection via the PATH_INFO to the /p URI.
CVE-2017-17821 Buffer Overflow in cpp (CVE-2017-17821)
vulnerability in cpp (CVE-2017-17821). Successful exploitation can lead to full system takeover.
CVE-2017-17794 Vulnerability in blogotext-project (CVE-2017-17794)
vulnerability in blogotext-project (CVE-2017-17794). Successful exploitation can lead to full system takeover.
CVE-2017-17790 Vulnerability in ruby-lang (CVE-2017-17790)
vulnerability in ruby-lang (CVE-2017-17790). Successful exploitation can lead to full system takeover.
CVE-2017-17777 Authentication Bypass in paid-to-read-script-project (CVE-2017-17777)
authentication bypass in paid-to-read-script-project (CVE-2017-17777). Successful exploitation can lead to full system takeover.
CVE-2017-17779 Paid To Read Script 2.0.5 has SQL injection via the referrals.php id parameter.
Paid To Read Script 2.0.5 has SQL injection via the referrals.php id parameter.
CVE-2017-15877 Vulnerability in sistemagpweb (CVE-2017-15877)
vulnerability in sistemagpweb (CVE-2017-15877). Successful exploitation can lead to full system takeover.
CVE-2017-16949 Unrestricted File Upload in wordpress (CVE-2017-16949)
vulnerability in wordpress (CVE-2017-16949). Successful exploitation can lead to full system takeover.
CVE-2017-17721 SQL Injection in csharp (CVE-2017-17721)
SQL injection in csharp (CVE-2017-17721). Successful exploitation can lead to full system takeover.
CVE-2017-17645 Bus Booking Script 1.0 has SQL Injection via the txtname parameter to admin/index.php.
Bus Booking Script 1.0 has SQL Injection via the txtname parameter to admin/index.php.
CVE-2017-17651 SQL Injection in sqli (CVE-2017-17651)
SQL injection in sqli (CVE-2017-17651). Successful exploitation can lead to full system takeover.
CVE-2017-17730 DedeCMS through 5.7 has SQL Injection via the logo parameter to plus/flink_add.php.
DedeCMS through 5.7 has SQL Injection via the logo parameter to plus/flink_add.php.
CVE-2017-17731 DedeCMS through 5.7 has SQL Injection via the $_FILES superglobal to plus/recommend.php.
DedeCMS through 5.7 has SQL Injection via the $_FILES superglobal to plus/recommend.php.
CVE-2017-17733 Vulnerability in maccms (CVE-2017-17733)
vulnerability in maccms (CVE-2017-17733). Successful exploitation can lead to full system takeover.
CVE-2017-17671 Path Traversal in apache (CVE-2017-17671)
path traversal in apache (CVE-2017-17671). Successful exploitation can lead to full system takeover.
CVE-2017-17672 Unsafe Deserialization in deserialization (CVE-2017-17672)
vulnerability in deserialization (CVE-2017-17672). Successful exploitation can lead to full system takeover.
CVE-2017-17648 SQL Injection in sqli (CVE-2017-17648)
SQL injection in sqli (CVE-2017-17648). Successful exploitation can lead to full system takeover.
CVE-2017-14589 Vulnerability in atlassian (CVE-2017-14589)
vulnerability in atlassian (CVE-2017-14589). Successful exploitation can lead to full system takeover.
CVE-2017-17638 Groupon Clone Script 3.01 has SQL Injection via the city_ajax.php state_id parameter.
Groupon Clone Script 3.01 has SQL Injection via the city_ajax.php state_id parameter.
CVE-2017-17639 Muslim Matrimonial Script 3.02 has SQL Injection via the success-story.php succid parameter.
Muslim Matrimonial Script 3.02 has SQL Injection via the success-story.php succid parameter.
CVE-2017-17640 SQL Injection in sqli (CVE-2017-17640)
SQL injection in sqli (CVE-2017-17640). Successful exploitation can lead to full system takeover.
CVE-2017-17641 Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter.
Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter.
CVE-2017-17613 SQL Injection in sqli (CVE-2017-17613)
SQL injection in sqli (CVE-2017-17613). Successful exploitation can lead to full system takeover.
CVE-2017-17617 Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter.
Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter.
CVE-2017-17618 Kickstarter Clone Script 2.0 has SQL Injection via the investcalc.php projid parameter.
Kickstarter Clone Script 2.0 has SQL Injection via the investcalc.php projid parameter.
CVE-2017-17622 Online Exam Test Application Script 1.6 has SQL Injection via the exams.php sort parameter.
Online Exam Test Application Script 1.6 has SQL Injection via the exams.php sort parameter.
CVE-2017-17623 SQL Injection in sqli (CVE-2017-17623)
SQL injection in sqli (CVE-2017-17623). Successful exploitation can lead to full system takeover.
CVE-2017-17624 SQL Injection in sqli (CVE-2017-17624)
SQL injection in sqli (CVE-2017-17624). Successful exploitation can lead to full system takeover.
CVE-2017-17626 SQL Injection in sqli (CVE-2017-17626)
SQL injection in sqli (CVE-2017-17626). Successful exploitation can lead to full system takeover.
CVE-2017-17627 SQL Injection in sqli (CVE-2017-17627)
SQL injection in sqli (CVE-2017-17627). Successful exploitation can lead to full system takeover.
CVE-2017-17629 SQL Injection in sqli (CVE-2017-17629)
SQL injection in sqli (CVE-2017-17629). Successful exploitation can lead to full system takeover.
CVE-2017-17631 SQL Injection in sqli (CVE-2017-17631)
SQL injection in sqli (CVE-2017-17631). Successful exploitation can lead to full system takeover.
CVE-2017-17632 SQL Injection in sqli (CVE-2017-17632)
SQL injection in sqli (CVE-2017-17632). Successful exploitation can lead to full system takeover.
CVE-2017-17633 SQL Injection in sqli (CVE-2017-17633)
SQL injection in sqli (CVE-2017-17633). Successful exploitation can lead to full system takeover.
CVE-2017-17634 Single Theater Booking Script 3.2.1 has SQL Injection via the findcity.php q parameter.
Single Theater Booking Script 3.2.1 has SQL Injection via the findcity.php q parameter.
CVE-2017-17635 SQL Injection in sqli (CVE-2017-17635)
SQL injection in sqli (CVE-2017-17635). Successful exploitation can lead to full system takeover.
CVE-2017-17636 MLM Forced Matrix 2.0.9 has SQL Injection via the news-detail.php newid parameter.
MLM Forced Matrix 2.0.9 has SQL Injection via the news-detail.php newid parameter.
CVE-2017-17637 Car Rental Script 2.0.4 has SQL Injection via the countrycode1.php val parameter.
Car Rental Script 2.0.4 has SQL Injection via the countrycode1.php val parameter.
CVE-2017-17586 SQL Injection in sqli (CVE-2017-17586)
SQL injection in sqli (CVE-2017-17586). Successful exploitation can lead to full system takeover.
CVE-2017-17587 SQL Injection in c (CVE-2017-17587)
SQL injection in c (CVE-2017-17587). Successful exploitation can lead to full system takeover.
CVE-2017-17588 SQL Injection in sqli (CVE-2017-17588)
SQL injection in sqli (CVE-2017-17588). Successful exploitation can lead to full system takeover.
CVE-2017-17589 SQL Injection in sqli (CVE-2017-17589)
SQL injection in sqli (CVE-2017-17589). Successful exploitation can lead to full system takeover.
CVE-2017-17591 Realestate Crowdfunding Script 2.7.2 has SQL Injection via the single-cause.php pid parameter.
Realestate Crowdfunding Script 2.7.2 has SQL Injection via the single-cause.php pid parameter.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →