U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Search Type: Search All
There are 244,057 matching records.
Displaying matches 150,041 through 150,060.
Vuln ID Summary CVSS Severity
CVE-2017-17629

Secure E-commerce Script 2.0.1 has SQL Injection via the category.php searchmain or searchcat parameter, or the single_detail.php sid parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17628

Responsive Realestate Script 3.2 has SQL Injection via the property-list tbud parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17627

Readymade Video Sharing Script 3.2 has SQL Injection via the single-video-detail.php report_videos array parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17626

Readymade PHP Classified Script 3.3 has SQL Injection via the /categories subctid or mctid parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17625

Professional Service Script 1.0 has SQL Injection via the service-list city parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.1: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17624

PHP Multivendor Ecommerce 1.0 has SQL Injection via the single_detail.php sid parameter, or the category.php searchcat or chid1 parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17623

Opensource Classified Ads Script 3.2 has SQL Injection via the advance_result.php keyword parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17622

Online Exam Test Application Script 1.6 has SQL Injection via the exams.php sort parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17621

Multivendor Penny Auction Clone Script 1.0 has SQL Injection via the PATH_INFO to the /detail URI.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17620

Lawyer Search Script 1.1 has SQL Injection via the /lawyer-list city parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17619

Laundry Booking Script 1.0 has SQL Injection via the /list city parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17618

Kickstarter Clone Script 2.0 has SQL Injection via the investcalc.php projid parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17617

Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17616

Event Search Script 1.0 has SQL Injection via the /event-list city parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17615

Facebook Clone Script 1.0 has SQL Injection via the friend-profile.php id parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 8.8 HIGH
V2.0: 6.5 MEDIUM
CVE-2017-17614

Food Order Script 1.0 has SQL Injection via the /list city parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17613

Freelance Website Script 2.0.6 has SQL Injection via the jobdetails.php pr_id parameter or the searchbycat_list.php catid parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17612

Hot Scripts Clone 3.1 has SQL Injection via the /categories subctid or mctid parameter.

Published: December 13, 2017; 4:29:02 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17611

Doctor Search Script 1.0 has SQL Injection via the /list city parameter.

Published: December 13, 2017; 4:29:01 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH
CVE-2017-17610

E-commerce MLM Software 1.0 has SQL Injection via the service_detail.php pid parameter, event_detail.php eventid parameter, or news_detail.php newid parameter.

Published: December 13, 2017; 4:29:01 AM -0500
V4.0:(not available)
V3.0: 9.8 CRITICAL
V2.0: 7.5 HIGH