Mitel Audio and Web Conferencing (AWC) is prone to a remote command-injection vulnerability because it fails to adequately sanitize user-supplied input data. Remote attackers can exploit this issue to execute arbitrary shell commands with the privileges of the user running the application.
The Calibre software is prone to a cross-site scripting vulnerability and a directory-traversal vulnerability due to insufficient sanitization of user-supplied input. Exploiting these vulnerabilities allows an attacker to execute arbitrary script code in the browser of an unsuspecting user and view arbitrary local files and directories within the context of the webserver. This can lead to the theft of authentication credentials and other sensitive information, which can be used to launch further attacks.
This exploit allows an attacker to execute SQL injection attacks on the Katalog Plyt Audio script version 1.0. The vulnerability exists due to improper input validation, which allows an attacker to manipulate SQL queries and gain unauthorized access to the database.
Habari is prone to multiple cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input data. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Openfiler is vulnerable to a cross-site scripting (XSS) attack due to inadequate input sanitization. An attacker can exploit this vulnerability by injecting arbitrary script code through user-supplied data. This can lead to the execution of malicious scripts in the browser of a targeted user, potentially allowing the attacker to steal authentication credentials and carry out further attacks.
FreeNAS is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
The Mafya Oyun Scrpti application is prone to an SQL-injection vulnerability. This vulnerability occurs due to the application's failure to properly sanitize user-supplied input before using it in an SQL query. A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.
The Social Share application is vulnerable to SQL Injection due to improper input sanitization. An attacker can exploit this vulnerability by injecting malicious SQL queries through the 'postid' parameter in the 'postview.php' script. Successful exploitation could lead to compromising the application, unauthorized access or modification of data, or exploitation of other vulnerabilities in the underlying database.
Social Share is prone to multiple cross-site-scripting vulnerabilities because it fails to properly sanitize user-supplied input.An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.http://www.example.com/socialshare/save.php?title=<XSS>http://www.example.com/socialshare/save.php?url="><XSS>
Radius Manager is prone to multiple cross-site-scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.