An attacker can access the database of VP-ASP Shopping Cart V6.50 by using the URL www.site.com/database/shopping650.mdb
A Remote Code Execution exists in Moodle 1.9.3. A Remote Code Execution (RCE) vulnerability has been found in filter/tex/texed.php. In order to exploit this vulnerability register_globals must be enabled as the 'TeX Notation' filter. The parameter '$pathname' is not sanitized and can be used to inject arbitrary commands.
An attacker can exploit this vulnerability by sending a specially crafted HTTP request to the vulnerable application. This can allow the attacker to access the database and execute arbitrary SQL commands.
After registering in the site, the attacker can go to the photos section (http://www.site.me/Photos/photos.php) and create a new album (http://www.site.me/Photos/create_album.php). The attacker can then upload a malicious shell file (shell.jpg.php or shell.php) which will be located at http://www.site.me/Member_images/
This exploit allows an attacker to retrieve the password of a Wysi Wiki Wyg 1.0 user by sending a malicious request to the server. The malicious request is sent to the /config/passwd.txt path, which contains the user's password in plaintext.
Xpoze Pro is vulnerable to Blind SQL Injection. An attacker can exploit this vulnerability by using a malicious SQL query in the 'menu' parameter of the 'home.html' page. The malicious query can be used to extract sensitive information from the database.
Microsoft Visual Basic ActiveX Controls mscomct2.ocx Animation Object is vulnerable to a buffer overflow vulnerability. An attacker can exploit this vulnerability by creating a malicious .AVI file and serving it via an UNC path. This will allow the attacker to execute arbitrary code on the vulnerable system.
A vulnerability exists in Simple Unix MONitor (sumon) version 0.7.0, which allows remote attackers to execute arbitrary commands via the host parameter in chg.php, the host parameter in stats.php, and the fichero_post parameter in showfile.php and difffile.php.
A vulnerability in ASP-CMS v.1.0 allows an attacker to inject malicious SQL commands into the application. This can be exploited to gain access to the application's database and potentially gain access to sensitive information. The vulnerability exists due to insufficient sanitization of user-supplied input in the 'cha' parameter of the 'index.asp' script. An attacker can exploit this vulnerability by sending a specially crafted HTTP request containing malicious SQL commands. This can be used to gain access to the application's database and potentially gain access to sensitive information.
ASPired2Protect is vulnerable to a database disclosure vulnerability. An attacker can access the ASPired2Protect.mdb database file which contains sensitive information such as usernames and passwords.