The Mambo CMS N-Press component is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
This is a buffer overflow exploit for Publish-It version 3.6d. The exploit allows an attacker to execute arbitrary code by overflowing the SEH (Structured Exception Handler) in the application.
The Mambo CMS AHS Shop component is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
The Mambo CMS N-Gallery component is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
This module exploits a buffer overflow in the VideoPlayer.ocx ActiveX installed with the X360 Software. By setting an overly long value to 'ConvertFile()', an attacker can overrun a .data buffer to bypass ASLR/DEP and finally execute arbitrary code.
This exploit takes advantage of a buffer overflow vulnerability in the ActSoft DVD-Tools (dvdtools.ocx) ActiveX control. It allows an attacker to execute arbitrary code on the target system by overflowing the buffer and overwriting the SEH handler.
The Flash FTP Server v2.1 is vulnerable to a directory traversal attack, which allows an attacker to access files outside the intended directory by using specially crafted input in the FTP commands.
The Mambo CMS N-Skyrslur is prone to a cross-site scripting vulnerability due to improper sanitization of user-supplied input. An attacker can exploit this vulnerability by injecting arbitrary script code in the browser of a targeted user. This can lead to the theft of cookie-based authentication credentials and facilitate other malicious activities.
The Web Professional application is vulnerable to SQL injection attacks due to inadequate sanitization of user-supplied data before using it in an SQL query. This vulnerability can be exploited by an attacker to compromise the application, gain unauthorized access or modify data, and potentially exploit other vulnerabilities in the underlying database.
Serendipity is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.