SQL injection Prevention - GET : suspicious SQL statement in header


Description   This alarm is raised when a suspicious combination of SQL known keywords is found in a SIP header.
     
Default
configuration
 
Profiles High Medium Low Internet
Action Block Block Block Block
Alarm Level Major Minor Minor Major
     
References  
     
Available since   ASQ v4.0.0
     
Protects   Joomla Core Multiple Vulnerabilities Fixed by 3.4.5
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Joomla Third-Party Modules Multiple Vulnerabilities
Joomla "JoomShopping" SQL Injection Vulnerability
Joomla Third-Party Modules Multiple Vulnerabilities
Merethis Centreon Blind SQL Injection and Authenticated Remote Command Execution Vulnerability
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Cisco WebEx Meeting Center GET Parameter Vulnerability
TYPO3 Multiple Third-Party Components Vulnerabilities
Cisco Prime Collaboration Manager SQL Injection Vulnerability
Cacti Multiple Vulnerabilities Fixed by 0.8.8d
WordPress WP Symposium Plugin SQL Injection Vulnerability
WordPress Contus Video Gallery Plugin SQL Injection Vulnerability
WordPress Community Events Plugin Multiple SQL Injection Vulnerabilities
Cisco Unified Communications Manager Interactive Voice Response Interface SQL Injection Vulnerability
WordPress WP Business Intelligence Lite Plugin SQL Injection Vulnerability
Galette ZendDB Two SQL Injection Vulnerabilities
WordPress SEO by Yoast Plugin Cross-Site Request Forgery and SQL Injection Vulnerabilities
WordPress Store Locator Plugin "sl_vars[num_initial_displayed]" SQL Injection Vulnerability
SolarWinds Products "sort" and "dir" SQL Injection Vulnerabilities
phpBugTracker Multiple Vulnerabilities
WordPress Spider Event Calendar Plugin "cat_id" SQL Injection Vulnerability
F5 BIG-IP Application Security Manager Tree View Cross-Site Scripting Vulnerability
miniBB "code" SQL Injection Vulnerability
Zabbix Two SQL Injection Vulnerabilities
GLPI "condition" SQL Injection Vulnerability
PHP-Fusion Multiple SQL Injection Vulnerabilities
IP.Board "id" SQL Injection Vulnerability
ManageEngine Password Manager Pro Two SQL Injection Vulnerabilities
IP.Board IP.Content Module "cid" SQL Injection Vulnerability
BSS BS-Client Multiple Vulnerabilities
InvGate Service Desk Multiple SQL Injection Vulnerabilities
WordPress Polldaddy Polls & Ratings Plugin Cross-Site Scripting Vulnerability
web2Project Multiple SQL Injection Vulnerabilities
Videos Tube "url" SQL Injection Vulnerability
ZeroCMS Multiple Vulnerabilities
webEdition "tblFile" SQL Injection Vulnerability
NULL NUKE Cross-Site Request Forgery and SQL Injection Vulnerabilities
Free Help Desk Script Insertion and SQL Injection Vulnerabilities
Xerox DocuShare URL SQL Injection Vulnerability
mAdserve Multiple "id" SQL Injection Vulnerabilities
Jigowatt PHP Event Calendar "year" SQL Injection Vulnerability
Netvolution CMS SQL Injection Vulnerability
WordPress mTouch Quiz Plugin "quiz" Cross-Site Scripting and SQL Injection Vulnerabilities
Joomla! AJAX Shoutbox Component "jal_lastID" SQL Injection Vulnerability
couponPHP Two Cross-Site Scripting Vulnerabilities
Ganesha Digital Library Cross-Site Scripting and SQL Injection Vulnerabilities
Cory Support "q" SQL Injection Vulnerability
POSH Weakness and Two Vulnerabilities
GeoCore Multiple SQL Injection Vulnerabilities
HostBill Staff Tickets SQL Injection Vulnerability
OpenDocMan Security Bypass and SQL Injection Vulnerabilities
Pina CMS Cross-Site Scripting Vulnerability
ITechClassifieds Multiple SQL Injection and Cross-Site Scripting Vulnerabilities
mySeat Restaurant Reservation System Cross-Site Scripting and SQL Injection Vulnerabilities
Collabtive Script Insertion and SQL Injection Vulnerabilities
Horizon QCMS File Disclosure and SQL Injection Vulnerabilities
UAEPD Shopping Cart Script Multiple SQL Injection Vulnerabilities
CUBIC CMS Multiple Vulnerabilities
AuctionWebScript Lowest Unique Bid Auction "id" SQL Injection Vulnerability
AuctionWebScript Ebay Clone "id" SQL Injection Vulnerability
AuctionWebScript Penny Auction "id" SQL Injection Vulnerability
WordPress FormCraft Plugin "id" SQL Injection Vulnerability
Testa OTMS "test_id" SQL Injection Vulnerability
ViciDial Asterisk GUI Client SQL Injection and Arbitrary Command Execution Vulnerability
Dolibarr "sondage" SQL Injection Vulnerability
Bilboplanet Cross-Site Scripting and SQL Injection Vulnerabilities
Aanval SAS Cross-Site Scripting and SQL Injection Vulnerabilities
Posnic Stock Management System Cross-Site Scripting and SQL Injection Vulnerabilities
Flo CMS "archivem" SQL Injection Vulnerability
myBusinessAdmin "id" SQL Injection Vulnerability
DotNetNuke DNNArticle Module "categoryid" SQL Injection Vulnerability
Quack Chat Cross-Site Scripting and Script Insertion Vulnerabilities
Joomla! redSHOP Component "pid" SQL Injection Vulnerability
MLM Auction "id" SQL Injection Vulnerability
Cotonti "c" SQL Injection Vulnerability
2daybiz Multi Level Marketing Software Cross-Site Scripting and SQL Injection Vulnerabilities
Saurus CMS Multiple Vulnerabilities
McAfee ePolicy Orchestrator Multiple Cross-Site Scripting Vulnerabilities
ivote "id" SQL Injection Vulnerability
Top Games Script "gid" SQL Injection Vulnerability
ClientExec Security Issue and Multiple Vulnerabilities
Fobuc Guestbook "category" SQL Injection Vulnerability
Matterdaddy Market Cross-Site Scripting and SQL Injection Vulnerabilities
WordPress Spider Catalog Plugin Cross-Site Scripting and SQL Injection Vulnerabilities
Ajax Availability Calendar Multiple Vulnerabilities
Joomla! DJ-Classifieds Component "se_regs[]" SQL Injection Vulnerability
EasyWebScripts Craigslist Clone "catid" SQL Injection Vulnerability
b2evolution "show_statuses[]" SQL Injection Vulnerability
phpVMS PopUpNews Module SQL Injection Vulnerability
rebus:list "list_id" SQL Injection Vulnerability
daloRADIUS Multiple Vulnerabilities
Joomla! RSFiles! Component "cid" SQL Injection Vulnerability
Nconf Path Disclosure Weakness and Cross-Site Scripting Vulnerability
PHP-Fusion Multiple SQL Injection and Cross-Site Scripting Vulnerabilities
EasyWebScripts eBay Clone Script Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
Scripts Genie Domain Trader "id" SQL Injection Vulnerability
Gallery Personals "L" SQL Injection Vulnerability
Games Site Script "id" SQL Injection Vulnerability
OpenEMR Multiple Vulnerabilities
AdaptCMS Multiple Vulnerabilities
ImageCMS "q" SQL Injection Vulnerability
WordPress WP Symposium Plugin Multiple SQL Injection Vulnerabilities
Classified Ultra "cname" Cross-Site Scripting and "c" SQL Injection Vulnerabilities
Website Baker Concert Calendar Add-on Cross-Site Scripting and SQL Injection Vulnerabilities
WordPress Shopping Cart Plugin Multiple SQL Injection Vulnerabilities
MyBB HM_My Country Flags Plugin "cnam" SQL Injection Vulnerability
Guru Auction Two SQL Injection Vulnerabilities
Elite Bulletin Board Multiple SQL Injection Vulnerabilities
MyBB Transactions Plugin "transaction" SQL Injection Vulnerability
MyBB Profile Blogs Plugin Script Insertion and SQL Injection Vulnerabilities
MyBB Tips Of The Day Plugin Script Insertion and SQL Injection Vulnerabilities
Joomla! JooProperty Component Multiple Vulnerabilities
Newscoop "f_email" SQL Injection Vulnerability
Beat Websites "id" SQL Injection Vulnerability
Baby Gekko Multiple Cross-Site Scripting Vulnerabilities
MYRE Vacation Rental Software Cross-Site Scripting and SQL Injection Vulnerabilities
The FAQ Manager Two SQL Injection Vulnerabilities
netOffice Dwins Multiple SQL Injection Vulnerabilities
Intramaps Multiple Vulnerabilities
WordPress Hitasoft FLV Player Plugin "id" SQL Injection Vulnerability
Joomla! Spider Catalog Component "product_id" SQL Injection Vulnerability
WordPress FireStorm Professional Real Estate Plugin "id" SQL Injection Vulnerability
Joomla! Commedia Component "id" SQL Injection Vulnerability
ManageEngine Security Manager Plus File Disclosure and SQL Injection Vulnerabilities
Cartweaver Local File Inclusion and SQL Injection Vulnerabilities
Campaign Enterprise "UID" SQL Injection Vulnerability
MyBB Profile Albums Plugin SQL Injection Vulnerability
airVision NVR "path" Arbitrary File Disclosure and "id" SQL Injection Vulnerabilities
WordPress Spider Calendar Plugin Cross-Site Scripting and SQL Injection Vulnerabilities
TorrentTrader Cross-Site Scripting and SQL Injection Vulnerabilities
webERP Multiple Vulnerabilities
LuxCal Web Calendar "id" SQL Injection Vulnerability
TAGWORX.CMS "cid" SQL Injection Vulnerability
Auxilium PetRatePro Multiple Vulnerabilities
LimeSurvey Multiple Vulnerabilities
Joomla! Spider Calendar Lite Component "date" SQL Injection Vulnerability
WordPress HD Webplayer Plugin Two SQL Injection Vulnerabilities
Joomla! Komento Component RSS Feed "cid" SQL Injection Vulnerability
OrderSys Two Cross-Site Scripting Vulnerabilities
YourArcadeScript SQL Injection and Cross-Site Request Forgery Vulnerabilities
ManageEngine OpStor SQL Injection and Cross-Site Scripting Vulnerabilities
Flynax General Classifieds Multiple Cross-Site Scripting Vulnerabilities
Cyclope Employee Surveillance Solution Security Bypass and SQL Injection Vulnerabilities
Total Shop UK eCommerce URL SQL Injection Vulnerability
1024 CMS "id" and "p" SQL Injection Vulnerabilities
Joomla! En Masse Component "sortBy" SQL Injection Vulnerability
TCExam Cross-Site Scripting and SQL Injection Vulnerabilities
Joomla! Joomgalaxy Component "catid" SQL Injection Vulnerability
Limny "escape()" SQL Injection Vulnerability
Ushahidi Multiple Vulnerabilities
CuteFlow Multiple Vulnerabilities
Zabbix "itemid" SQL Injection Vulnerability
Spiceworks snmpd.conf Script Insertion Vulnerabilities
WordPress WP Symposium Plugin Multiple SQL Injection Vulnerabilities
WordPress Sendit Newsletter Plugin "id" SQL Injection Vulnerability
MGB Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
GuestBook Script Multiple Cross-Site Scripting Vulnerabilities
MBB CMS Multiple Vulnerabilities
LIOOSYS CMS "id" SQL Injection Vulnerability
WordPress Website FAQ Plugin "category" SQL Injection Vulnerability
PD Products Two SQL Injection Vulnerabilities
IBM System Storage Products Storage Manager Cross-Site Scripting and SQL Injection Vulnerabilities
Swoopo Gold Multiple Vulnerabilities
Nuked-Klan "eid" SQL Injection Vulnerability
Jobs Portal Multiple Script Insertion and SQL Injection Vulnerabilities
Contao "field" SQL Injection Vulnerability
Cells Blog CMS Multiple SQL Injection Vulnerabilities
WordPress Contus HD FLV Player Plugin SQL Injection and Arbitrary File Upload Vulnerabilities
Bigware Shop "pollid" Two SQL Injection Vulnerabilities
Membris Multiple Vulnerabilities
Simple Web Content Management System Multiple Vulnerabilities
SocialEngine "category_id" SQL Injection Vulnerability
Jaow CMS "add_ons" SQL Injection Vulnerability
Pligg CMS Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
PHP-addressbook Multiple Vulnerabilities
eLearning Server "nid" SQL Injection Vulnerability
FreeRealty Multiple Vulnerabilities
Travelon Express "hid" Two SQL Injection Vulnerabilities
Galette "id_adh" SQL Injection Vulnerability
OrangeHRM Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
Serendipity Cross-Site Scripting and SQL Injection Vulnerabilities
myCare2x Cross-Site Scripting and SQL Injection Vulnerabilities
OSSIM Cross-Site Scripting and SQL Injection Vulnerabilities
Opial Script Insertion and SQL Injection Vulnerabilities
Axous "id" SQL Injection Vulnerability
Uiga FanClub SQL Injection and Cross-Site Scripting Vulnerabilities
PHP Volunteer Management Multiple Vulnerabilities
Joomla! ccNewsletter Component "id" SQL Injection Vulnerability
Exponent CMS Cross-Site Scripting and SQL Injection Vulnerabilities
MediaXXX Mobile Video Module "query" SQL Injection Vulnerability
Minerva Infotech CMS "ID" SQL Injection Vulnerability
Horizon Quick CMS "username" SQL Injection Vulnerability
osCMax Admin Section URL SQL Injection Vulnerability
Newscoop Multiple Vulnerabilities
Matterdaddy Market Two SQL Injection Vulnerabilities
idev-GameSite "id" SQL Injection Vulnerability
GENU Multiple SQL Injection Vulnerabilities
osCMax Multiple Vulnerabilities
PicoPublisher Two SQL Injection Vulnerabilities
ArticleSetup Multiple Vulnerabilities
SWTOR CharDB Multiple Vulnerabilities
phplist "num" Cross-Site Scripting Vulnerability
Pre Printing Press "id" and "pid" SQL Injection Vulnerabilities
EncapsGallery "item_id" SQL Injection Vulnerability
NTG Haber Yazilimi "kat" SQL Injection Vulnerability
Linkasoft LeKommerce "id" SQL Injection Vulnerability
Exponent CMS "src" SQL Injection Vulnerability
deV!L'z Clanportal Witze Addon "id" SQL Injection Vulnerability
BrewBlogger Multiple Vulnerabilities
ImgPals Photo Host "u" SQL Injection Vulnerability
LimeSurvey Script Insertion and SQL Injection Vulnerabilities
Kongreg8 Script Insertion and SQL Injection Vulnerabilities
MyJobList "eid" SQL Injection Vulnerability
Seo Panel "website_id" and "lang_code" SQL Injection Vulnerabilities
phpDenora Multiple File Disclosure and SQL Injection Vulnerabilities
YVS Image Gallery "album_id" SQL Injection Vulnerability
Joomla! DT Register Component "list1" SQL Injection Vulnerability
OneForum Two "id" SQL Injection Vulnerabilities
LimeSurvey "fieldnames" SQL Injection Vulnerability
TestLink Multiple SQL Injection Vulnerabilities
Gazie "Login" Cross-Site Scripting and SQL Injection Vulnerabilities
Dolibarr ERP/CRM SQL and Command Injection Vulnerabilities
XRay CMS "username" SQL Injection Vulnerability
Basic Analysis and Security Engine SQL Injection and File Inclusion Vulnerabilities
Tube Ace Cross-Site Scripting and SQL Injection Vulnerabilities
HDWiki URL SQL Injection Vulnerability
ScriptsEz Ez Album Two Vulnerabilities
Vastal I-Tech Agent Zone Two SQL Injection Vulnerabilities
Pligg Cross-Site Scripting and SQL Injection Vulnerabilities
OSClass Multiple Vulnerabilities
Ev10 "docId" SQL Injection Vulnerability
deV!L'z Clanportal Gamebase Addon "gameid" SQL Injection Vulnerability
pGB "id" SQL Injection Vulnerability
Oracle Application Server Cross-Site Scripting and SQL Injection Vulnerabilities
Joomla! Discussions Component "catid" SQL Injection Vulnerability
Joomla! HD Video Share Component "id" SQL Injection Vulnerability
Contus Jobs Portal "Category" SQL Injection Vulnerability
ClipBucket Multiple Vulnerabilities
WordPress Pay With Tweet Plugin Multiple Vulnerabilities
DiY-CMS Blog Module Multiple SQL Injection Vulnerabilities
Open Business Management Multiple Vulnerabilities
cApexWEB "dfuserid" and "dfpassword" SQL Injection Vulnerabilities
Cyberoam UTM "tableid" SQL Injection Vulnerability
PHPShop CMS Free Multiple Vulnerabilities
WordPress Global Content Blocks Plugin "gcb" Two SQL Injection Vulnerabilities
DotA OpenStats "id" SQL Injection Vulnerability
Video Community Portal "id" SQL Injection Vulnerability
Social Network Community "userId" SQL Injection Vulnerability
BrowserCRM Multiple Vulnerabilities
Seotoaster "selectUserIdByLoginPass()" SQL Injection Vulnerability
Joomla! QContacts Component "filter_order" SQL Injection Vulnerability
WordPress UPM Polls Plugin "PID" SQL Injection Vulnerability
SePortal "goto" SQL Injection Vulnerability
SePortal Two SQL Injection Vulnerabilities
HitAppoint "username" SQL Injection Vulnerability
SourceBans Cross-Site Scripting and SQL Injection Vulnerabilities
Sepcity Shopping Mall "ID" SQL Injection Vulnerability
Sepcity Classified Ads "ID" SQL Injection Vulnerability
Sepcity Faculty Portal "ID" SQL Injection Vulnerability
WSN Products Multiple Vulnerabilities
Alstrasoft EPay Enterprise "cid" and "product" SQL Injection Vulnerabilities
SugarCRM Two SQL Injection Vulnerabilities
WordPress GRAND Flash Album Gallery Plugin Multiple Vulnerabilities
OrangeHRM Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
PHP Inventory Multiple SQL Injection Vulnerabilities
MH Products Kleinanzeigenmarkt "c" SQL Injection Vulnerability
NUs Newssystem "id" SQL Injection Vulnerability
CMScout "album" SQL Injection Vulnerability
Joomla GBU Facebook Component "face_id" SQL Injection Vulnerability
CMS Ariadna SQL Injection Vulnerabilities
Almnzm "id" SQL Injection Vulnerability
Joomla! XOBBIX Component "prodid" SQL Injection Vulnerability
Press Release Script "id" SQL Injection Vulnerability
Blogs manager Multiple SQL Injection Vulnerabilities
Freelancer calendar Multiple SQL Injection Vulnerabilities
Ziggurat Farsi CMS Multiple Vulnerabilities
Joomla AutarTimonial Component "limit" SQL Injection Vulnerability
Online Contact Manager Cross-Site Scripting and SQL Injection Vulnerabilities
Online Photo Pro "section" Cross-Site Scripting and SQL Injection Vulnerabilities
Joomla Canteen Component Multiple Vulnerabilities
iScripts ReserveLogic Multiple Vulnerabilities
iScripts CyberMatch "id" SQL Injection Vulnerability
Banner Management "id" SQL Injection Vulnerability
ScriptsFeed / BrotherScripts Auto Dealer Software "id" SQL Injection Vulnerability
Joomla DJ-ArtGallery Component "cid[]" Two Vulnerabilities
Smart ASP Survey SQL Injection and Cross-Site Scripting Vulnerabilities
ScriptsFeed Recipes Listing Portal SQL Injection Vulnerabilities
iScripts eSwap Cross-Site Scripting and SQL Injection Vulnerabilities
iScripts EasyBiller SQL Injection and Script Insertion Vulnerabilities
Ecomat CMS Cross-Site Scripting and SQL Injection Vulnerabilities
Joomla BF Quiz Component "catid" SQL Injection Vulnerability
2daybiz Online Classified Script Multiple Vulnerabilities
Document Library "intGroupID" SQL Injection Vulnerability
CuteSITE CMS Multiple Vulnerabilities
Elite Gaming Ladders SQL Injection Vulnerabilities
Virtual Real Estate Manager "Lid" SQL Injection Vulnerability
DaLogin SQL Injection and Script Insertion Vulnerabilities
OlyKit Swoopo Clone 2010 "id" SQL Injection Vulnerability
MCLogin System "myusername" SQL Injection Vulnerability
WordPress AdRotate Plugin "track" SQL Injection Vulnerability
Joomla RokModule Component Two SQL Injection Vulnerabilities
LabStoRe Multiple "where_clause" SQL Injection Vulnerabilities
OrderSys Multiple Vulnerabilities
Drupal Webform CiviCRM Integration Module Multiple SQL Injection Vulnerabilities
WordPress Media Library Categories Plugin "termid" SQL Injection Vulnerability
CmyDocument Content Management Multiple Vulnerabilities
Joomla! JEEMA SMS Component Cross-Site Request Forgery and SQL Injection Vulnerabilities
Drupal Views Module SQL Injection Vulnerability
VP-ASP Unspecified SQL Injection Vulnerability
Joomla! Alameda Component "storeid" SQL Injection Vulnerability
Joomla! Vik Real Estate Extension "contract" and "imm" SQL Injection Vulnerabilities
Joomla! HM Community Component Script Insertion and SQL Injection Vulnerabilities
SPIP Unspecified SQL Injection Vulnerability
Jara Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
OpenEMR "u" SQL Injection Vulnerability
Joomla! Freestyle FAQs and Testimonials Components Unspecified SQL Injection Vulnerability
DMXready Polling Booth Manager "QuestionID" SQL Injection Vulnerability
ColdGen ColdUserGroup Cross-Site Scripting and SQL Injection Vulnerabilities
ColdGen ColdBookmarks Multiple Vulnerabilities
ColdGen ColdCalendar "EventID" SQL Injection Vulnerability
MicroNetSoft Rental Property Management Website "ad_ID" SQL Injection Vulnerability
MicroNetSoft RV Dealer Website Multiple SQL Injection Vulnerabilities
CubeCart Cross-Site Scripting and SQL Injection Vulnerabilities
zenphoto "a" SQL Injection Vulnerability
Softbiz Article Directory Script "sbiz_id" SQL Injection Vulnerability
Joomla! Aardvertiser Component "cat_name" SQL Injection
Joomla! Clantools Component Two SQL Injection Vulnerabilities
Joomla! Clantools Component "squad" SQL Injection Vulnerability
Joomla! Gantry Component "moduleid" SQL Injection Vulnerability
Member Management System "REF_URL" Cross-Site Scripting Vulnerability
chillyCMS "name" Cross-Site Scripting and SQL Injection Vulnerabilities
Pilot Cart Multiple Vulnerabilities
TYPO3 Questionnaire Extension Cross-Site Scripting and SQL Injection Vulnerabilities
Entrans Cross-Site Scripting and SQL Injection Vulnerabilities
Joomla! Amblog Component "catid" and "articleid" SQL Injection Vulnerabilities
Joomla! TimeTrack Component "ct_id" SQL Injection Vulnerability
Nuked-Klan Partenaires Module "id" SQL Injection Vulnerability
Virtue Book Store Two SQL Injection Vulnerabilities
Netvolution CMS "artID" SQL Injection Vulnerability
Elgg pg/search SQL Injection Vulnerability
Pre Studio Business Cards Designer "id" SQL Injection Vulnerability
KaiBB Cross-Site Scripting and SQL Injection Vulnerabilities
wizmall "BID" and "UID" SQL Injection Vulnerabilities
Uiga Personal Portal Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
Simple PHP Forum Script "id" SQL Injection Vulnerability
OpenEMR Multiple Vulnerabilities
OpenEMR Script Insertion and SQL Injection Vulnerabilities
Yet Another CMS Two SQL Injection Vulnerabilities
Dolphin "iIDcat" SQL Injection Vulnerability
Site@School Multiple Vulnerabilities
PunBB Reputation Plugin SQL Injection and Local File Inclusion
GNUBoard URL SQL Injection Vulnerability
AContent Multiple Vulnerabilities
WordPress WP Photo Album Plus Plugin "wppa-album" SQL Injection Vulnerability
Radfa Sabadkharid "add2cart" SQL Injection Vulnerability
EC-CUBE Two Unspecified SQL Injection Vulnerabilities
WordPress Contact Form Plugin "wpcf_easyform_formid" SQL Injection Vulnerability
Joomla! eTree Component "id" and "user_id" SQL Injection Vulnerabilities
MyBB MyStatus Plugin "statid" SQL Injection Vulnerability
Microsoft Forefront Unified Access Gateway Multiple Vulnerabilities
WordPress Ninja Announcements Plugin "[ninja_annc]" Shortcode SQL Injection
KaiBB Two SQL Injection Vulnerabilities
Joomla! Barter Component Multiple Vulnerabilities
Joomla! Time Returns Component "id" SQL Injection Vulnerability
Sonexis ConferenceManager Script Insertion and SQL Injection Vulnerabilities
Alibaba Clone Multiple SQL Injection Vulnerabilities
Xweblog Multiple SQL Injection Vulnerabilities
Joomla! JE Directory Component "catid" SQL Injection Vulnerability
webSPELL Multiple Vulnerabilities
Zuitu "id" SQL Injection Vulnerability
Tsmim Lessons Library Script "page" SQL Injection Vulnerability
enkai Unspecified Cross-Site Scripting Vulnerability
WordPress WP-PostRatings Plugin "[ratings]" Shortcode SQL Injection Vulnerability
Achievo Multiple Vulnerabilities
spidaNews "id" SQL Injection Vulnerability
Novell Identity Manager Cross-Site Scripting Vulnerabilities
WordPress WP-Polls Plugin "[poll]" Shortcode SQL Injection Vulnerability
MH Products Pay Pal Shop Digital "ItemID" SQL Injection Vulnerability
MH Products MHP Downloadshop "ItemID" SQL Injection Vulnerability
MH Products Projekt Shop "ts" SQL Injection Vulnerability
MH Products Easy Online Shop "kat" SQL Injection Vulnerability
Parallels Plesk Panel Cross-Site Scripting and SQL Injection Vulnerabilities
Traq Multiple Cross Site Scripting and SQL Injection Vulnerabilities
Magtrb MyNews Multiple Vulnerabilities
TYPO3 dev/null robots.txt Extension SQL Injection Vulnerability
TYPO3 RTG Files Extension SQL Injection Vulnerability
Ayco Shop Multiple SQL Injection Vulnerabilities
Cacti Cross-Site Scripting and SQL Injection Vulnerabilities
Vlinks "id" SQL Injection Vulnerability
CMS Faethon Cross-Site Scripting and SQL Injection
Joomla! JSupport Component Script Insertion and SQL Injection Vulnerabilities
OneOrZero AIMS Multiple Vulnerabilities
phpList Multiple Vulnerabilities
OneCMS Multiple Vulnerabilities
Ayco Emlak Multiple SQL Injection Vulnerabilities
Car Portal Multiple Vulnerabilities
Ayco Resim Galeri "catid" SQL Injection Vulnerability
WordPress Count Per Day Plugin "month" SQL Injection Vulnerability
Mercator Sentinel SQL Injection Vulnerability
Papoo Light Cross-Site Scripting Vulnerability
WordPress Auctions Plugin "wpa_id" SQL Injection Vulnerabilities
TYPO3 Cache Flooding Denial of Service and SQL Injection Vulnerabilities
Support Incident Tracker Multiple Vulnerabilities
MyAuth "pass" SQL Injection Vulnerability
WordPress WP Forum Server Plugin Multiple SQL Injection Vulnerabilities
MYRE Real Estate Software Multiple Vulnerabilities
LightNEasy "page" and "id" SQL Injection Vulnerabilities
TYPO3 Direct Mail Subscription Extension Two Vulnerabilities
WordPress WP-Filebase Plugin "base" SQL Injection Vulnerability
WordPress Photoracer Plugin Multiple Cross-Site Scripting and SQL Injection Vulnerabilities
Joomla! Flip Wall Component "catid" SQL Injection Vulnerability
WordPress MM Forms Community Parameter Key SQL Injection Vulnerability
WordPress Event Registration Plugin Two SQL Injection Vulnerabilities
Joomla! Sponsor Wall Component "catid" SQL Injection Vulnerability
WordPress Link Library Plugin "id" Cross-Site Scripting and SQL Injection Vulnerabilities
WordPress Community Events Plugin "id" Cross-Site Scripting and SQL Injection Vulnerabilities
WordPress KNR Author List Plugin Two SQL Injection Vulnerabilities
Advanced Image Hosting Cross-Site Scripting and SQL Injection Vulnerabilities
EasyGallery SQL Injection and Cross-Site Scripting Vulnerabilities
WordPress Js-appointment Plugin "cat" SQL Injection Vulnerability
WordPress Donation Plugin "did" SQL Injection Vulnerability
WordPress SH Slideshow Plugin "id" SQL Injection Vulnerability
WordPress Image Gallery with Slideshow Plugin SQL Injection and Arbitrary File Upload
WordPress Event Registration Plugin Two SQL Injection Vulnerabilities
Joomla! Sponsor Wall Component "catid" SQL Injection Vulnerability
Advanced Image Hosting Cross-Site Scripting and SQL Injection Vulnerabilities
SAP NetWeaver MailExamples Module Cross Site Scripting Vulnerability
Moodle Multiple Remote SQL Injection and Security Bypass Vulnerabilities
vBulletin Search UI Data Processing Remote SQL Injection Vulnerability
WordPress Unauthorized Access and Multiple Unspecified Vulnerabilities
GroupOffice Data Processing Multiple Remote SQL Injection Vulnerabilities
Apache Archiva Cross Site Scripting and Request Forgery Vulnerabilities
phpMyAdmin for TYPO3 Cross Site Scripting and URL Redirection
Debian Security Update Fixes Doctrine Remote SQL Injection Vulnerability
Debian Security Update Fixes Request Tracker Multiple Vulnerabilities
MyBB Remote SQL Injection and Cross Site Request Forgery Vulnerabilities
Joomla SQL Injection and Multiple Information Disclosure Vulnerabilities
CA Total Defense Remote Code Execution and SQL Injection Vulnerabilities
Alibaba Clone "SellerID" and "IndustryID" SQL Injection Vulnerabilities
Tausch Ticket Script Multiple Parameter SQL Injection Vulnerabilities
Siteframe Remote SQL Injection and Information Disclosure Vulnerabilities
WebAsyst Shop-Script SQL Injection and Cross Site Scripting Vulnerability
MyPHPDating "page_id" Parameter Remote SQL Injection Vulnerability
Citrix XenCenterWeb Multiple Command and SQL Injection Vulnerabilities
KerviNet Forum SQL Injection and Cross Site Scripting Vulnerabilities
NEWSolved "newsscript.php" Multiple SQL Injection Vulnerabilities
BookFlip Component for Joomla "book_id" SQL Injection Vulnerability
K2 Component for Joomla "category" Remote SQL Injection Vulnerability
com_php for Joomla "id" Parameter Remote SQL Injection Vulnerability
Messages Library "CatID" Parameter Remote SQL Injection Vulnerability
osTicket Administrative Login Remote SQL Injection Vulnerability
RS-CMS "key" Parameter Processing Remote SQL Injection Vulnerability
Tickets Component for Joomla "id" Parameter SQL Injection Vulnerability
MyBB "birthdayprivacy" Parameter Remote SQL Injection Vulnerability
phpDatingClub SQL Injection and Cross Site Scripting Vulnerabilities
Debian Security Update Fixes GForge Multiple Vulnerabilities
Campus Virtual-LMS SQL Injection and Cross Site Scripting Vulnerabilities
Zip Store Chat "login" and "senha" Remote SQL Injection Vulnerability
Shop-Script Pro "current_currency" Remote SQL Injection Vulnerability
Frontis "source_class" Parameter Remote SQL Injection Vulnerability
Interlogy Profile Manager Basic "pmadm" SQL Injection Vulnerability
Virtue News Manager "nid" SQL Injection and Cross Site Scripting Issues
Virtue Shopping Mall "cid" Parameter Remote SQL Injection Vulnerability
Virtue Book Store "cid" Parameter Remote SQL Injection Vulnerability
Virtue Classifieds "category" Parameter SQL Injection Vulnerability
School Component for Joomla "classid" SQL Injection Vulnerability
MyCars "authuserid" Parameter Remote SQL Injection Vulnerability
SuperNews "noticia" Parameter Remote SQL Injection Vulnerability
OCS Inventory NG Server SQL Injection and File Disclosure Vulnerabilities
EgyPlus "username" and "password" Remote SQL Injection Vulnerability
MyMiniBill "orderid" Parameter Remote SQL Injection Vulnerability
phpBugTracker "username" Remote SQL Injection Vulnerability
WebMember "formID" Parameter Remote SQL Injection Vulnerability
MiniTwitter SQL Injection and Cross Site Scripting Vulnerabilities
OnlineRent "pid" Parameter Handling Remote SQL Injection Vulnerability
PHP Dir Submit Username and Password SQL Injection Vulnerability
pc4 Uploader "id" Parameter Remote SQL Injection Vulnerability
myGesuad Multiple SQL Injection and Cross Site Scripting Vulnerabilities
myColex Multiple SQL Injection and Cross Site Scripting Vulnerabilities
PHPenpals "ID" Parameter Remote SQL Injection Vulnerability
Custom T-shirt Design "id" SQL Injection and Cross Site Scripting Issues
Submitter Script "uNev" and "uJelszo" Remote SQL Injection Vulnerability
MaxCMS "m_username" Parameter Remote SQL Injection Vulnerability
Family Connections Multiple Parameter SQL Injection Vulnerabilities
Dokeos Remote SQL Injection and Cross Site Scripting Vulnerabilities
BIGACE CMS "username" Parameter Remote SQL Injection Vulnerability
uTopic "rating" Parameter Handling Remote SQL Injection Vulnerability
Luxbum "username" Parameter Remote SQL Injection Vulnerability
RTWebalbum "AlbumId" Parameter Remote SQL Injection Vulnerability
BluSky CMS "news_id" Parameter Remote SQL Injection Vulnerability
Drupal News Page Keywords Processing SQL Injection Vulnerability
New 5 Star Rating "myusername" Parameter Remote SQL Injection Vulnerability
Creasito "username" Parameter Remote SQL Injection Vulnerability
FunGamez SQL Injection and Local File Inclusion Vulnerabilities
WysGui CMS "admin_pages" Remote SQL Injection Vulnerability
EZ Webitor "txtUserId" and "txtPassword" SQL Injection Vulnerability
Seditio CMS Events Plugin "c" Remote SQL Injection Vulnerability
Q2 Solutions ConnX "txtEmail" Remote SQL Injection Vulnerability
BookJoomlas for Joomla "gbid" Remote SQL Injection Vulnerability
TYPO3 Extensions Information Disclosure and Injection Vulnerabilities
Debian Security Update Fixes Auth2db SQL Injection Vulnerability
PHP Petition Signing Script Remote SQL Injection Vulnerabilities
Simply Classified "category_id" Parameter SQL Injection Vulnerability
Media Entertainment Script "id" Remote SQL Injection Vulnerability
PHPizabi Remote Code Execution and SQL Injection Vulnerabilities
PHPCMS2008 "q" Parameter Handling Remote SQL Injection Vulnerability
fMoblog Plugin for WordPress "id" Remote SQL Injection Vulnerability
GDL (Gdl Digital Library) "node" Remote SQL Injection Vulnerability
PHPRunner "SearchField" Parameter Remote SQL Injection Vulnerabilities
phpComasy "entry_id" Parameter Remote SQL Injection Vulnerability
Kim Websites "username" Parameter Remote SQL Injection Vulnerability
JogjaCamp JProfile Gold "id_news" Remote SQL Injection Vulnerability
BannerManager "username" and "password" SQL Injection Vulnerability
Newsletter Manager Plus.Attach Remote SQL Injection Vulnerability
PenPal "username" and "password" Remote SQL Injection Vulnerability
XGuestBook "user" Parameter Remote SQL Injection Vulnerability
My_eGallery for MDPro "pid" Remote SQL Injection Vulnerability
taifajobs "jobid" Parameter Handling Remote SQL Injection Vulnerability
SimpleCMMS Multiple Parameter Remote SQL Injection Vulnerabilities
Graugon Forum "id" Parameter Remote SQL Injection Vulnerability
Grestul Username and Password Remote SQL Injection Vulnerability
MemHT Portal "deletenewpm" and "deletepm" SQL Injection Vulnerabilities
PowerMovieList SQL Injection and Cross Site Scripting Vulnerabilities
Graugon Gallery SQL Injection and Cross Site Scripting Vulnerabilities
Fluorine Halite "id" Parameter Remote SQL Injection Vulnerability
BlueBird "username" and "passwd" Remote SQL Injection Vulnerabilities
MyNews "username" and "passwd" Remote SQL Injection Vulnerabilities
Auth PHP "username" and "passwd" Remote SQL Injection Vulnerabilities
PHP Director "searching" Parameter Remote SQL Injection Vulnerability
A Better Member-Based ASP Photo Gallery SQL Injection Vulnerability
BusinessSpace "id" Parameter Remote SQL Injection Vulnerability
w3bcms Multiple Parameter Remote SQL Injection Vulnerabilities
IF-CMS "id" Parameter Handling Remote SQL Injection Vulnerability
CafeEngine "catid" Parameter Remote SQL Injection Vulnerability
ProFTPD Data Processing Remote SQL Injection Vulnerability
Fedora Security Update Fixes GLPI Multiple SQL Injection Vulnerabilities
Chipmunk Blog "username" Remote SQL Injection Vulnerability
GameScript Remote SQL Injection and Local File Inclusion Vulnerabilities
Community CMS "id" Parameter Remote SQL Injection Vulnerability
Max.Blog "id" Parameter Handling Remote SQL Injection Vulnerability
SHOP-INET "grid" Parameter Remote SQL Injection Vulnerability
Flash Magazine Deluxe for Joomla Remote SQL Injection Vulnerability
ClickAuction "txtEmail" Parameter Remote SQL Injection Vulnerability
Groone GLinks "cat" Parameter Remote SQL Injection Vulnerability
Wazzum Dating Software "userid" Remote SQL Injection Vulnerability
PHP-CMS "username" Parameter Remote SQL Injection Vulnerability
Gempar Script Toko Online "cat_id" Remote SQL Injection Vulnerability
E-ShopSystem Multiple Parameter Remote SQL Injection Vulnerabilities
ITLPoll "id" Parameter Handling Remote SQL Injection Vulnerability
Mod-auth-mysql Data Processing Remote SQL Injection Vulnerability
Portfol Component for Joomla "vcatid" SQL Injection Vulnerability
SocialEngine "classifiedcat_id" Parameter SQL Injection Vulnerability
Kroax for PHP-Fusion "comment_id" Parameter SQL Injection Vulnerability
Weight Loss Recipe Book "admin-login.php" SQL Injection Vulnerability
BKWorks ProPHP Username Remote SQL Injection Vulnerability
phpMDJ "id_animateur" Parameter Remote SQL Injection Vulnerability
DZcms "pcat" Parameter Handling Remote SQL Injection Vulnerability
Fast Guest Book "uname" Parameter Remote SQL Injection Vulnerability
PHP Auction System SQL Injection and Cross Site Scripting Vulnerabilities
Phoca Documentation for Joomla Remote SQL Injection Vulnerability
Na_newsdescription for Joomla Remote SQL Injection Vulnerability
plx Autoreminder "id" Parameter Remote SQL Injection Vulnerability
PhpMesFilms "id" Parameter Remote SQL Injection Vulnerability
WSN Guest "search" Parameter Remote SQL Injection Vulnerability
webSPELL "id" Parameter Handling Remote SQL Injection Vulnerability
GForge "create()" Comment Handling Remote SQL Injection Vulnerability
StormBoard "id" Parameter Handling Remote SQL Injection Vulnerability
Low Cost Hotels for Joomla "id" Parameter SQL Injection Vulnerability
Joomla Hotel Booking "id" Parameter SQL Injection Vulnerability
TYPO3 Extensions Cross Site Scripting and SQL Injection Vulnerabilities
WEC Discussion for TYPO3 Cross Site Scripting and SQL Injection Issues
Fedora Security Update Fixes Drupal-Views SQL Injection Vulnerability
Citrix Application Gateway Management Interface SQL injection Issue
PHP TV Portal "mid" Parameter Remote SQL Injection Vulnerability
ActiveVotes "AccountID" Parameter Remote SQL Injection Vulnerability
Active Web Mail "TabOpenQuickTab1" SQL Injection Vulnerability
Active Bids "ItemID" Parameter Remote SQL Injection Vulnerability
Lito Lite CMS "cid" Parameter Remote SQL Injection Vulnerability
Active Test "QuizID" Parameter Remote SQL Injection Vulnerabilities
Active Web Helpdesk Multiple Remote SQL Injection Vulnerabilities
Active Photo Gallery "username" and "password" SQL Injection Issue
Active Price Comparison Multiple Parameter SQL Injection Vulnerabilities
Active Time Billing "username" and "password" SQL Injection Vulnerability
Active Business Directory "catid" Remote SQL Injection Vulnerability
KTP Computer Customer Database CMS Multiple Vulnerabilities
minimal-ablog SQL Injection and File Upload Vulnerabilities
WebStudio CMS "pageid" Remote SQL Injection Vulnerability
CMS Ortus "City" Parameter Remote SQL Injection Vulnerability
Post Affiliate Pro "umprof_status" Remote SQL Injection Vulnerability
ParsBlogger "wr" Parameter Handling Remote SQL Injection Vulnerability
Star Articles Multiple Script Remote SQL Injection Vulnerabilities
PHP-Fusion "subject" Parameter Remote SQL Injection Vulnerability
Vlog System "note" Parameter Remote SQL Injection Vulnerability
Prozilla Hosting Index "id" Remote SQL Injection Vulnerability
NetArt Media Cars Portal "id" Remote SQL Injection Vulnerability
NetArt Media Blog System "id" Remote SQL Injection Vulnerability
PG Real Estate Solution "login_lg" Remote SQL Injection Vulnerability
PG Roomate Finder Solution "login_lg" SQL Injection Vulnerability
PG Job Site "poll_view_id" Remote SQL Injection Vulnerability
Pre Job Board "Username" and "Password" SQL Injection Vulnerabilities
W3matter RevSense and AskPert SQL Injection Vulnerability
MauryCMS "c" Parameter Handling Remote SQL Injection Vulnerability
MyTopix "send" Parameter Remote SQL Injection Vulnerability
ClipShare "chid" Parameter Remote SQL Injection Vulnerability
PHPStore Yahoo Answers "id" Remote SQL Injection Vulnerability
Flosites Blog "cat" and "category" Remote SQL Injection Vulnerabilities
PHPStore Wholesale "id" Parameter Remote SQL Injection Vulnerability
Quick Poll Script "id" Parameter Remote SQL Injection Vulnerability
AlstraSoft Article Manager Pro "username" SQL Injection Vulnerability
ActiveCampaign TrioLive "department_id" SQL Injection Vulnerability
Contact Info "catid" Parameter Remote SQL Injection Vulnerability
Pre Real Estate Listings SQL Injection and File Upload Vulnerabilities
Catalog Production for Joomla "id" Remote SQL Injection Vulnerability
PozScripts Business Directory Script "cid" SQL Injection Vulnerability
AJ Square Free Polling Script "ques" Remote SQL Injection Vulnerability
JooBlog Component for Joomla "PostID" SQL Injection Vulnerability
DeltaScripts PHP Classifieds "siteid" Remote SQL Injection Vulnerability
E-topbiz Online Store "cat_id" Parameter SQL Injection Vulnerability
Domain Seller Pro "id" Parameter Remote SQL Injection Vulnerability
EasyBookMarker Multiple Parameter SQL Injection Vulnerabilities
V3 Chat Profiles/Dating Script Multiple Unauthorized Access Vulnerabilities
DigiAffiliate Administrative Interface Remote SQL Injection Vulnerability
Mole Group Airline Ticket Sale Script "Name" SQL Injection Vulnerability
ExoPHPDesk "user" Parameter Remote SQL Injection Vulnerability
ZEEMATRI "adid" Parameter Remote SQL Injection Vulnerability
Openfire Remote SQL Injection and Cross Site Scripting Vulnerabilities
E-topbiz Slide Popups "passfromform" SQL Injection Vulnerability
E-topbiz Domain Shop "passfromform" SQL Injection Vulnerability
Mole Group Taxi Calc Dist Script "email" SQL Injection Vulnerability
Mole Group Airline Ticket Sale Script "flight" SQL Injection Vulnerability
Pre Real Estate Listings "username1" SQL Injection Vulnerability
HarlandScripts drinks "recid" Parameter SQL Injection Vulnerability
Pre Job Board "aid" Parameter Remote SQL Injection Vulnerability
Pre Simple CMS "user" Parameter Remote SQL Injection Vulnerability
PHP Auto Listings Script "itemno" Remote SQL Injection Vulnerability
Pre Podcast Portal "id" Parameter Remote SQL Injection Vulnerability
Shahrood "id" Parameter Handling Remote SQL Injection Vulnerability
Downline Goldmine Builder "id" Remote SQL Injection Vulnerability
Downline Goldmine Category Addon "id" SQL Injection Vulnerability
Downline Goldmine paidversion "id" Remote SQL Injection Vulnerability
Downline Goldmine newdownlinebuilder "id" SQL Injection Vulnerability
YourFreeWorld Programs Rating "id" Remote SQL Injection Vulnerability
YourFreeWorld Downline Builder "id" Remote SQL Injection Vulnerability
YourFreeWorld Banner Management "id" SQL Injection Vulnerability
YourFreeWorld Blog Blaster "id" Remote SQL Injection Vulnerability
YourFreeWorld Autoresponder Hosting "id" SQL Injection Vulnerability
YourFreeWorld Forced Matrix "id" Remote SQL Injection Vulnerability
YourFreeWorld Short Url & Url Tracker "id" SQL Injection Vulnerability
YourFreeWorld Viral Marketing "id" SQL Injection Vulnerability
YourFreeWorld Scrolling Text Ads "id" SQL Injection Vulnerability
YourFreeWorld Reminder Service "id" SQL Injection Vulnerability
YourFreeWorld Classifieds Blaster "id" SQL Injection Vulnerability
YourFreeWorld Classifieds "category" SQL Injection Vulnerability
YourFreeWorld Shopping Cart "c" Remote SQL Injection Vulnerability
NetRisk Remote SQL Injection and Cross Site Scripting Vulnerabilities
Maran PHP Shop "id" Parameter Remote SQL Injection Vulnerability
1st News "id" Parameter Handling Remote SQL Injection Vulnerability
deV!Lz Clanportal "users" Parameter Remote SQL Injection Vulnerability
Harlandscripts Pro Traffic One "trg" Remote SQL Injection Vulnerability
Venalsur On-line Booking Centre "OfertaID" SQL Injection Vulnerability
Pro Traffic One "id" Parameter Handling SQL Injection Vulnerability
PersianBB "id" Parameter Handling Remote SQL Injection Vulnerability
Alternate Profiles for e107 "id" Parameter SQL Injection Vulnerability
Persia BME E-Catalogue "q" Parameter SQL Injection Vulnerability
Kasra CMS "shme" and "cont" Remote SQL Injection Vulnerabilities
PozScripts Classified Auctions "id" SQL Injection Vulnerability
SFS Forum "id" Parameter Handling Remote SQL Injection Vulnerability
MyForum "id" Parameter Handling Remote SQL Injection Vulnerability
Private Messaging Component for Limbo SQL Injection Vulnerability
ShopMaker "id" Parameter Remote SQL Injection Vulnerability
TYPO3 Extensions SQL Injection and Cross Site Scripting Vulnerabilities
Zeeproperty "adid" Parameter Remote SQL Injection Vulnerability
Meeting Room Booking System "area" SQL Injection Vulnerabilities
miniBloggie "post_id" Parameter Remote SQL Injection Vulnerability
e107 "ue" Parameter Handling Remote SQL Injection Vulnerability
DS-Syndicate Component for Joomla SQL Injection Vulnerability
Nice Talk Component for Joomla "tagid" SQL Injection Vulnerability
iGaming CMS "keywords" Remote SQL Injection Vulnerability
Arcadem Pro "articlecat" Parameter SQL Injection Vulnerability
PG Matchmaking Script "id" Parameter SQL Injection Vulnerabilities
Atomic Photo Album "apa_album_ID" SQL Injection Vulnerability
WSN Links Free "id" Parameter Remote SQL Injection Vulnerability
Fez "parent_id" Parameter Remote SQL Injection Vulnerability
MyFWB "page" Parameter Remote SQL Injection Vulnerability
Basic PHP Events Lister "id" Parameter SQL Injection Vulnerability
MapCal "id" Parameter Handling Remote SQL Injection Vulnerability
Mailhandler Module for Drupal Remote SQL Injection Vulnerability
E-Php CMS "es_id" Parameter Remote SQL Injection Vulnerability
Addalink Remote SQL Injection and Security Bypass Vulnerabilities
vbLOGIX Tutorials "cat_id" Remote SQL Injection Vulnerability
Ruby on Rails ":limit" and ":offset" SQL Injection Vulnerabilities
iBoutique "cat" Parameter Remote SQL Injection Vulnerability
WebPortal "aid" Parameter Remote SQL Injection Vulnerability
pForum "id" Parameter Handling Remote SQL Injection Vulnerability
phpVID Cross Site Scripting and SQL Injection Vulnerabilities
Zanfi Autodealers CMS AutOnline Remote SQL Injection Vulnerability
MemHT Portal "stats_res" Parameter Remote SQL Injection Vulnerability
Masir Camp E-Shop Module "ordercode" SQL Injection Vulnerability
Altrasoft Forum "cat" Parameter Remote SQL Injection Vulnerability
E-Php Shopping Cart Script "cid" Remote SQL Injection Vulnerability
Invision Power Board "name" Remote SQL Injection Vulnerability
Debian Security Update Fixes Slash Input Validation Vulnerabilities
Reciprocal Links Manager "site" Remote SQL Injection Vulnerability
myPHPNuke "artid" Parameter Remote SQL Injection Vulnerability
BLOG Engine Plugin for e107 Remote SQL Injection Vulnerability
PHPBasket "pro_id" Parameter Remote SQL Injection Vulnerability
phpArcadeScript "cat" Parameter Remote SQL Injection Vulnerability
DeeEmm CMS Remote File Inclusion and SQL Injection Vulnerabilities
ZeeReviews "ItemID" Parameter SQL Injection Vulnerability
Article Friendly Standard "autid" Parameter SQL Injection Vulnerability
Article Friendly Pro "Cat" Parameter SQL Injection Vulnerability
PozScripts Classified Ads Script "cid" Remote SQL Injection Vulnerability
TubeGuru "UID" Parameter Remote SQL Injection Vulnerability
EMC Centera Universal Access Remote SQL Inection Vulnerability
Getacoder Clone "sb_protype" Parameter SQL Injection Vulnerability
GC Auction Platinum "cate_id" Parameter SQL Injection Vulnerability
SiteAdmin CMS "art" Parameter Remote SQL Injection Vulnerability
Pligg "id" Parameter Handling Remote SQL Injection Vulnerability
Owl "username" Parameter Remote SQL Injection Vulnerability
Youtuber Clone "UID" Parameter Remote SQL Injection Vulnerability
ViArt Shop "category_id" Parameter SQL Injection Vulnerability
BizDirectory Multiple SQL Injection and Cross Site Scripting Vulnerabilities
EasyPublish SQL Injection and Cross Site Scripting Vulnerabilities
EasyCards Remote SQL Injection and Cross Site Scripting Vulnerabilities
EasyDynamicPages SQL Injection and Cross Site Scripting Issues
ShopcartDX "pid" Parameter Remote SQL Injection Vulnerability
MojoAuto "cat_a" Parameter Remote SQL Injection Vulnerability
MojoJobs "cat_a" Parameter Remote SQL Injection Vulnerability
MojoPersonals "cat" Parameter Remote SQL Injection Vulnerability
MojoClassifieds "cat_a" Parameter Remote SQL Injection Vulnerability
HRS Multi "key" Parameter Remote SQL Injection Vulnerability
DigiLeave "book_id" Parameter Remote SQL Injection Vulnerability
AlstraSoft Affiliate Network Pro "pgm" Remote SQL Injection Vulnerability
tplSoccerSite Multiple Parameter Remote SQL Injection Vulnerabilities
ITechBids Gold Cross Site Scripting and SQL Injection Vulnerabilities
DreamNews "id" Parameter Remote SQL Injection Vulnerability
Lastminute Script "cid" Parameter Remote SQL Injection Vulnerability
SmartPPC Pay Per Click Script "idDirectory" SQL Injection Vulnerability
Online Booking Manager "id" Remote SQL Injection Vulnerability
beamospetition for Joomla "pet" Remote SQL Injection Vulnerability
Xe webtv Component for Joomla "id" Remote SQL Injection Vulnerability
SebracCMS "uname" and "recid" Remote SQL Injection Vulnerabilities
AcmlmBoard "pow" Parameter Remote SQL Injection Vulnerability
eSHOP100 "SUB" Parameter Remote SQL Injection Vulnerability
MyPHP CMS "pid" Parameter Remote SQL Injection Vulnerability
Jokes and Funny Pics Script "sbjoke_id" SQL Injection Vulnerability
Webdevindo-CMS "hal" Parameter Remote SQL Injection Vulnerability
Netinvoice Component for Joomla "cid" SQL Injection Vulnerability
Relative Real Estate Systems "listing_id" SQL Injection Vulnerability
shareCMS "eventID" and "userID" Remote SQL Injection Vulnerabilities
DUware DUcalendar "iEve" Parameter SQL Injection Vulnerability
Hivemaker "cid" Parameter Remote SQL Injection Vulnerability
ViralDX "bannerid" Parameter Remote SQL Injection Vulnerability
Link ADS "linkid" Parameter Remote SQL Injection Vulnerability
TOKOKITA Multiple Parameter Remote SQL Injection Vulnerabilities
Battle Blog "Entry" Parameter Remote SQL Injection Vulnerability
JooBlog Component for Joomla "CategoryID" SQL Injection Vulnerability
CKGold "item_id" Parameter Remote SQL Injection Vulnerability
RevokeBB "search" Parameter Remote SQL Injection Vulnerability
ClassSystem "teacher_id" Parameter Remote SQL Injection Vulnerability
Simpel Side Netbutik Multiple Remote SQL Injection Vulnerabilities
6rbScript "newsid" Parameter Remote SQL Injection Vulnerability
Maxsite "category" Parameter Remote SQL Injection Vulnerability
RoomPHPlanning "idresa" Parameter Remote SQL Injection Vulnerability
Xomol CMS SQL Injection and Local File Inclusion Vulnerabilities
ComicShout "comic_id" Parameter Remote SQL Injection Vulnerability
MX-System "page" Parameter Remote SQL Injection Vulnerability
PHP-Jokesite "cat_id" Parameter Remote SQL Injection Vulnerability
Netious CMS "pageid" Parameter Remote SQL Injection Vulnerability
How2ASP Webboard "qNo" Remote SQL Injection Vulnerability
FicHive "category" Parameter Remote SQL Injection Vulnerability
CMS WebManager-Pro Multiple Remote SQL Injection Vulnerabilities
TAGWORX.CMS Multiple Remote SQL Query Injection Vulnerabilities
EMO Realty Manager "ida" Parameter SQL Injection Vulnerability
The Real Estate Script "docID" Parameter SQL Injection Vulnerability
Links Pile "cat_id" Parameter Remote SQL Injection Vulnerability
phpDirectorySource Multiple Remote SQL Injection Vulnerabilities
cpLinks Remote SQL Injection and Cross Site Scripting Vulnerabilities
PHP Forge "id" Parameter Remote SQL Query Injection Vulnerability
Angelo Emlak SQL Injection and Cross Site Scripting Vulnerabilities
Filiale for Joomla "idFiliale" Parameter SQL Injection Vulnerability
E-RESERV "ID_loc" Parameter Remote SQL Injection Vulnerability
Spreadsheet for WordPress "ss_id" Remote SQL Injection Vulnerability
Web Calendar "user_id" Parameter Remote SQL Injection Vulnerability
FlippingBook Joomla Component "book_id" SQL Injection Vulnerability
Philboard W1L3D4 "id" Parameter Remote SQL Injection Vulnerability
Apartment Search Script "r" Parameter SQL Injection Vulnerability
Tr Script News "nb" Parameter Remote SQL Injection Vulnerability
PHP-Fusion "submit_info" Array Remote SQL Injection Vulnerability
BlogWorx "id" Parameter Handling Remote SQL Injection Vulnerability
Crazy Goomba "id" Parameter Remote SQL Injection Vulnerability
XplodPHP AutoTutorials "id" Parameter SQL Injection Vulnerability
dream4 Koobi Pro "poll_id" Parameter SQL Injection Vulnerability
Classifieds Caffe "cat_id" Parameter Remote SQL Injection Vulnerability
Lasernet CMS "new" Parameter Remote SQL Injection Vulnerability
Mumbo Jumbo Media "id" Parameter Remote SQL Injection Vulnerability
Pligg "id" Parameter Handling Remote SQL Injection Vulnerability
SuperNET Shop Multiple Parameter Remote SQL Injection Vulnerabilities
Prediction Football "matchid" Parameter SQL Injection Vulnerability
724CMS "ID" Parameter Handling Remote SQL Injection Vulnerability
My Gaming Ladder Combo System "ladderid" SQL Injection Vulnerability
iScripts SocialWare "id" Parameter Remote SQL Injection Vulnerability
PIGMy-SQL "id" Parameter Remote SQL Query Injection Vulnerability
Links Directory "cat_id" Parameter Remote SQL Injection Vulnerability
Software Index "cid" Parameter Remote SQL Injection Vulnerability
Site Sift Listings "id" Parameter Remote SQL Injection Vulnerability
Prozilla Cheat Script "id" Parameter Remote SQL Injection Vulnerability
JGS-Treffen "view_id" Parameter Remote SQL Injection Vulnerability
Neat weblog "articleId" Parameter Remote SQL Injection Vulnerability
phpBP "id" Parameter Processing Remote SQL Injection Vulnerability
Dictionary Module for Xoops "id" Parameter SQL Injection Vulnerability
Mitra Informatika Solusindo Cart "p" Remote SQL Injection Vulnerability
Clasifier Component for Joomla "cat_id" SQL Injection Vulnerability
MyAnnonces Module for Runcms "cid" Remote SQL Injection Vulnerability
Photo Album Plugin for WordPress Multiple SQL Injection Vulnerabilities
Cisco Unified Communication Manager "key" SQL Injection Vulnerability
ibProArcade "g_display_order" Remote SQL Injection Vulnerability
WassUp Plugin for WordPress "to_date" SQL Injection Vulnerability
AdServe Plugin for WordPress "id" Parameter SQL Injection Vulnerability
EstateAgent Component for Mambo "objid" SQL Injection Vulnerability
Jokes Component for Mambo "cat" SQL Query Injection Vulnerability
Recipes Component for Mambo "id" SQL Query Injection Vulnerability
Buslicense Component for Mambo "aid" SQL Query Injection Vulnerability
Musepoes Component for Mambo "aid" SQL Query Injection Vulnerability
Glossary Component for Mambo "catid" SQL Query Injection Vulnerability
MaMML Component for Mambo "listid" SQL Query Injection Vulnerability
Fq Multicorreos Component for Mambo "listid" SQL Injection Vulnerability
Newsletter Component for Mambo "listid" SQL Injection Vulnerability
Bigware Shop "pollid" Parameter Handling SQL Injection Vulnerability
fGallery Plugin for WordPress "album" SQL Query Injection Vulnerability
WP-Cal Plugin for WordPress "id" SQL Query Injection Vulnerability
phpIP Management Multiple Parameter Remote SQL Injection Issues
CandyPress Store SQL Injection and Cross Site Scripting Vulnerabilities
Flinx "id" Parameter Handling Remote SQL Query Injection Vulnerability
Tiger Php News System "catid" Parameter SQL Injection Vulnerability
PHP-Nuke Search Module "sid" Parameter SQL Injection Vulnerability
aflog Remote SQL Query Injection and Cross Site Scripting Vulnerabilities
WP-Forum Plugin for WordPress "user" SQL Query Injection Vulnerability
AlstraSoft Forum Pay Per Post Exchange "catid" SQL Injection Issue
boastMachine "id" Parameter Processing SQL Injection Vulnerability
Mooseguy Blog System "month" Parameter SQL Injection Vulnerability
bloofoxCMS Remote SQL Injection and Directory Traversal Vulnerabilities
360 Web Manager "IDFM" Parameter SQL Query Injection Vulnerability
Pragmatic Utopia PU Arcade for Joomla "fid" SQL Injection Vulnerability
Woltlab Burning Board Lite "search.php" SQL Injection Vulnerabilities
TYPO3 "indexed_search" System Extension SQL Injection Vulnerability
SH-News "id" Parameter Processing Remote SQL Injection Vulnerability
DWdirectory "search" Parameter Remote SQL Injection Vulnerability
Ace Image Hosting Script "id" Parameter SQL Query Injection Vulnerability
Content Injector "id" Parameter Remote SQL Query Injection Vulnerability
WordPress "s" Parameter Handling Remote SQL Injection Vulnerability
Fedora Security Update Fixes Drupal Multiple Module Vulnerabilities
Dora Emlak Multiple Parameter Remote SQL Query Injection Vulnerabilities
WorkingOnWeb "idevent" Parameter Remote SQL Injection Vulnerability
Irola My-Time "login" and "password" Parameters SQL Injection Issues
PHPKIT "contentid" Parameter Remote SQL Query Injection Vulnerability
Content Injector "cat" Parameter Remote SQL Injection Vulnerability
Vu Case Manager "username" and "password" SQL Injection Vulnerability
VU Mass Mailer "password" Parameter Remote SQL Injection Vulnerability
AlstraSoft E-Friends "seid" Parameter Remote SQL Injection Vulnerability
Cacti "local_graph_id" Parameter Remote SQL Query Injection Vulnerability
ProfileCMS "id" Parameter Processing Remote SQL Injection Vulnerability
Toko Instan "id" and "katid" Parameters SQL Injection Vulnerabilities
phpMyAdmin Database Name SQL Injection and Cross Site Scripting
Aspee Ziyaretçi Defteri "kullanici" and "parola" Remote SQL Injection Vulnerabilities
Debian Security Update Fixes Zoph Remote SQL Injection Vulnerability
Simple Machines Forum Multiple Parameter SQL Injection Vulnerabilities
Vanilla "CategoryID" Parameter Processing SQL Injection Vulnerabilities
Aleris Web Publishing Server "mode" Remote SQL Injection Vulnerability
E-Vendejo "id" Parameter Handling Remote SQL Injection Vulnerability
JobSite Professional "id" Parameter Remote SQL Injection Vulnerability
emagiC CMS "pageId" Parameter Remote SQL Injection Vulnerability
Drupal Cross Site Scripting and Information Disclosure Vulnerabilities
Oracle Products Multiple Code Execution and SQL Injection Vulnerabilities
Softbiz Recipes Portal "sbcat_id" Remote SQL Query Injection Vulnerability
KwsPHP "album" Parameter Processing SQL Query Injection Vulnerability
cpDynaLinks "category" Parameter Processing SQL Injection Vulnerability
LedgerSMB "invoice quantity" and "sort" Fields SQL Injection Vulnerabilities
Softbiz Jobs and Recruitment Script "cid" SQL Query Injection Vulnerability
PHP Homepage M "id" Parameter Remote SQL Query Injection Vulnerability
X-script GuestBook Multiple Parameter Remote SQL Injection Vulnerabilities
ASP Product Catalog "cid" Parameter Remote SQL Injection Vulnerability
Expanded Calendar for PHP-Fusion "sel" SQL Query Injection Vulnerability
Netkamp Emlak Scripti SQL Injection and Cross Site Scripting Vulnerabilities
Ohesa Emlak Portali "Kategori" and "Emlak" SQL Injection Vulnerabilities
NukeScripts NukeSentinel "write_ban()" Remote SQL Injection Vulnerability
phpFullAnnu "mod" Parameter Processing Remote SQL Injection Vulnerability
Black Lily "class" Parameter Processing Remote SQL Injection Vulnerability
Clansphere "cat_id" Parameter Handling Remote SQL Injection Vulnerability
100 last CVE   CVE-2015-7899
CVE-2015-7859
CVE-2015-7858
CVE-2015-7857
CVE-2015-7297
CVE-2015-5472
CVE-2015-5471
CVE-2015-5469
CVE-2015-5461
CVE-2015-4454
CVE-2015-4342
CVE-2015-4208
CVE-2015-4188
CVE-2015-4109
CVE-2015-4075
CVE-2015-4074
CVE-2015-4073
CVE-2015-4072
CVE-2015-4071
CVE-2015-3325
CVE-2015-3313
CVE-2015-3173
CVE-2015-2803
CVE-2015-2665
CVE-2015-2148
CVE-2015-2147
CVE-2015-2146
CVE-2015-2145
CVE-2015-2144
CVE-2015-2143
CVE-2015-2142
CVE-2015-1561
CVE-2015-1560
CVE-2015-0699
CVE-2015-0270
CVE-2014-9566
CVE-2014-9450
CVE-2014-9342
CVE-2014-9258
CVE-2014-9254
CVE-2014-9239
CVE-2014-8596
CVE-2014-8089
CVE-2014-4856
CVE-2014-4710
CVE-2014-4198
CVE-2014-4197
CVE-2014-4196
CVE-2014-4195
CVE-2014-4194
CVE-2014-3997
CVE-2014-3996
CVE-2014-3119
CVE-2014-2654
CVE-2014-2303
CVE-2014-1946
CVE-2014-1945
CVE-2014-1619
CVE-2014-1618
CVE-2013-7187
CVE-2013-7139
CVE-2013-7138
CVE-2013-6873
CVE-2013-6872
CVE-2013-4953
CVE-2013-4468
CVE-2013-3524
CVE-2013-1804
CVE-2013-1803
CVE-2012-6658
CVE-2012-6587
CVE-2012-6505
CVE-2012-6504
CVE-2012-5874
CVE-2012-5849
CVE-2012-5700
CVE-2012-4258
CVE-2012-4238
CVE-2012-4237
CVE-2012-3835
CVE-2012-3834
CVE-2012-3820
CVE-2012-3476
CVE-2012-3475
CVE-2012-3474
CVE-2012-3473
CVE-2012-3472
CVE-2012-3471
CVE-2012-3470
CVE-2012-3469
CVE-2012-3468
CVE-2012-3435
CVE-2012-2952
CVE-2012-2938
CVE-2012-2937
CVE-2012-2936
CVE-2012-2923
CVE-2012-2903
CVE-2012-2741
CVE-2012-2740


 
 
 
 
 Risk level 
Moderate