header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

SQL Injection Vulnerability in System CMS Contentia

The System CMS Contentia is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

TornadoStore SQL Injection and HTML Injection Vulnerabilities

TornadoStore is prone to an SQL-injection vulnerability and an HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied input. An attacker may leverage these issues to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database or to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials, control how the site is viewed, and launch other attacks.

Cross-Site Scripting Vulnerabilities in Iatek PortalApp

Iatek PortalApp is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.

SQL Injection and Cross-Site Scripting Vulnerabilities in CANDID

CANDID is prone to an SQL-injection vulnerability and a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data. Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

V-EVA Classified Script SQL Injection Vulnerability

The V-EVA Classified Script is vulnerable to SQL injection attacks due to insufficient sanitization of user-supplied data before using it in an SQL query. An attacker can exploit this vulnerability to compromise the application, access or modify data, or exploit other vulnerabilities in the database.

Clix’N’Cash Clone 2010 SQL Injection Vulnerability

Clix'N'Cash Clone 2010 is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

eBay Clone Script 2010 SQL Injection Vulnerability

eBay Clone Script 2010 is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

MySpace Clone 2010 SQL Injection and Cross-Site Scripting Vulnerabilities

The MySpace Clone 2010 application is prone to an SQL-injection and a cross-site scripting vulnerability due to insufficient sanitization of user-supplied data. Exploiting these vulnerabilities could lead to various consequences such as stealing cookie-based authentication credentials, compromising the application, accessing or modifying data, or exploiting latent vulnerabilities in the underlying database.

Recent Exploits: