RSS   Vulnerabilities for 'Apartment search script'   RSS

2009-04-10
 
CVE-2008-6684

 

 
Unrestricted file upload vulnerability in editimage.php in Apartment Search Script allows remote attackers to execute arbitrary code by uploading a file with an executable extension and a GIF header, then accessing this file via a direct request to a renamed file in Member_Admin/logo/.

 
 
CVE-2008-6683

 

 
Cross-site scripting (XSS) vulnerability in listtest.php in Apartment Search Script allows remote attackers to inject arbitrary web script or HTML via the r parameter.

 
2008-04-23
 
CVE-2008-1919

CWE-89
 

 
SQL injection vulnerability in listtest.php in YourFreeWorld Apartment Search Script allows remote attackers to execute arbitrary SQL commands via the r parameter.

 

 >>> Vendor: Yourfreeworld 22 Products
Stylish text ads script
Short url and url tracker script
Apartment search script
Jokes site script
Ad board script
Banner management script
Url rotator script
Ad-exchange script
Programs rating script
Classifieds
Viral marketing script
Forced matrix script
Reminder service script
Autoresponder hosting script
Blog blaster script
Classifieds hosting script
Scrolling text ads script
Shopping cart script
Downline builder script
Classifieds blaster script
Ultra classifieds pro
Banner management


Copyright 2024, cxsecurity.com

 

Back to Top