-
CVE-2017-17594
•
published on December 13, 2017
DomainSale PHP Script 1.0 has SQL Injection via the domain.php id parameter.
-
CVE-2017-17597
•
published on December 13, 2017
Nearbuy Clone Script 3.2 has SQL Injection via the category_list.php search parameter.
-
CVE-2017-17599
•
published on December 13, 2017
Advance Online Learning Management Script 3.1 has SQL Injection via the courselist.php subcatid or popcourseid parameter.
-
CVE-2017-17604
•
published on December 13, 2017
Entrepreneur Bus Booking Script 3.0.4 has SQL Injection via the booker_details.php sourcebus parameter.
-
CVE-2017-17606
•
published on December 13, 2017
Co-work Space Search Script 1.0 has SQL Injection via the /list city parameter.
-
CVE-2017-17608
•
published on December 13, 2017
Child Care Script 1.0 has SQL Injection via the /list city parameter.
-
CVE-2017-17613
•
published on December 13, 2017
Freelance Website Script 2.0.6 has SQL Injection via the jobdetails.php pr_id parameter or the searchbycat_list.php catid parameter.
-
CVE-2017-17614
•
published on December 13, 2017
Food Order Script 1.0 has SQL Injection via the /list city parameter.
-
CVE-2017-17617
•
published on December 13, 2017
Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter.
-
CVE-2017-17619
•
published on December 13, 2017
Laundry Booking Script 1.0 has SQL Injection via the /list city parameter.
-
CVE-2017-17627
•
published on December 13, 2017
Readymade Video Sharing Script 3.2 has SQL Injection via the single-video-detail.php report_videos array parameter.
-
CVE-2017-17633
•
published on December 13, 2017
Multiplex Movie Theater Booking Script 3.1.5 has SQL Injection via the trailer-detail.php moid parameter, show-time.php moid parameter, or event-detail.php eid parameter.
-
CVE-2017-17641
•
published on December 13, 2017
Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter.
-
CVE-2017-17538
•
published on December 13, 2017
MikroTik v6.40.5 devices allow remote attackers to cause a denial of service via a flood of ICMP packets.
-
CVE-2017-17572
•
published on December 13, 2017
FS Amazon Clone 1.0 has SQL Injection via the PATH_INFO to /VerAyari.
-
CVE-2017-17575
•
published on December 13, 2017
FS Groupon Clone 1.0 has SQL Injection via the item_details.php id parameter or the vendor_details.php id parameter.
-
CVE-2017-17582
•
published on December 13, 2017
FS Grubhub Clone 1.0 has SQL Injection via the /food keywords parameter.
-
CVE-2017-17593
•
published on December 13, 2017
Simple Chatting System 1.0 allows Arbitrary File Upload via view/my_profile.php, which places files under uploads/.
-
CVE-2017-17595
•
published on December 13, 2017
Beauty Parlour Booking Script 1.0 has SQL Injection via the /list gender or city parameter.
-
CVE-2017-17603
•
published on December 13, 2017
Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_price, or maxprice parameter.