Searching query software vulnerabilities


The Microsoft Jet database engine allows an att


The Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the "VBA Shell" vulnerability.


Interbase 6 SuperServer for Linux allows an att


Interbase 6 SuperServer for Linux allows an attacker to cause a denial of service via a query containing 0 bytes.


Buffer overflow in host command allows a remote


Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.


code.php3 in Phorum 3.0.7 allows remote attacke


code.php3 in Phorum 3.0.7 allows remote attackers to read arbitrary files in the phorum directory via the query string.


IBM DB2 Universal Database version 6.1 allows u


IBM DB2 Universal Database version 6.1 allows users to cause a denial of service via a malformed query.


Buffer overflow in wwwwais allows remote attack


Buffer overflow in wwwwais allows remote attackers to execute arbitrary commands via a long QUERY_STRING (HTTP GET request).


PHPNetToolpack 0.1 allows remote attackers to e


PHPNetToolpack 0.1 allows remote attackers to execute arbitrary code via shell metacharacters in the a_query variable.


Unknown vulnerability in bonsai Mozilla CVS que


Unknown vulnerability in bonsai Mozilla CVS query tool allows remote attackers to execute arbitrary commands as the www-data user.


bonsai Mozilla CVS query tool allows remote att


bonsai Mozilla CVS query tool allows remote attackers to gain access to the parameters page without authentication.


lyskom-server 2.0.7 and earlier allows unauthen


lyskom-server 2.0.7 and earlier allows unauthenticated users to cause a denial of service (CPU consumption) via a large query.


Multiple cross-site scripting (XSS) vulnerabili


Multiple cross-site scripting (XSS) vulnerabilities in Sambar Server before 6.0 beta 6 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) isapi/testisa.dll, (2) testcgi.exe, (3) environ.pl, (4) the query parameter to samples/search.dll, (5) the price parameter to mortgage.pl, (6) the query string in dumpenv.pl, (7) the query string to dumpenv.pl, and (8) the E-Mail field of the guestbook script (book.pl).


Unknown vulnerability in WeHelpBUS 0.1 allows r


Unknown vulnerability in WeHelpBUS 0.1 allows remote attackers to execute arbitrary shell commands via the query string.


SQL injection vulnerability in the radius_xlat


SQL injection vulnerability in the radius_xlat function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via (1) group_membership_query, (2) simul_count_query, or (3) simul_verify_query configuration entries.


The ReadLog function in kaiseki.cgi in pngren a


The ReadLog function in kaiseki.cgi in pngren allows remote attackers to execute arbitrary commands via shell metacharacters in the query string.


Buffer overflow in the rdb_query function for D


Buffer overflow in the rdb_query function for Denora IRC Stats 1.0 might allow attackers to execute arbitrary code.


Looking Glass 20040427 allows remote attackers


Looking Glass Tuesday, April 27, 2004 allows remote attackers to execute arbitrary commands via shell metacharacters in the DNS lookup query field.


SQL injection vulnerability in debug/query_resu


SQL injection vulnerability in debug/query_results.jsp in Idetix Software Systems Revize CMS allows remote attackers to execute arbitrary SQL commands via the query parameter.


Buffer overflow in PowerDNS Recursor 3.1.3 and


Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attackers to execute arbitrary code via a malformed TCP DNS query that prevents Recursor from properly calculating the TCP DNS query length.


shopkitplus allows remote attackers to obtain s


shopkitplus allows remote attackers to obtain sensitive information via a request to (1) events.php with a curmonth[]=01 query string or (2) enc/stylecss.php with a changetheme[]= query string, which reveals the path in various error messages.


SQL injection vulnerability in search.php in Ge


SQL injection vulnerability in search.php in GetMyOwnArcade allows remote attackers to execute arbitrary SQL commands via the query parameter.


Software vulnerabilities results 1 to 20 of 301     
Page: 12345...16