-
CVE-2017-17639
•
published on December 13, 2017
Muslim Matrimonial Script 3.02 has SQL Injection via the success-story.php succid parameter.
-
CVE-2017-17640
•
published on December 13, 2017
Advanced World Database 2.0.5 has SQL Injection via the city.php country or state parameter, or the state.php country parameter.
-
CVE-2017-17641
•
published on December 13, 2017
Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter.
-
CVE-2017-17642
•
published on December 13, 2017
Basic Job Site Script 2.0.5 has SQL Injection via the keyword parameter to /job.
-
CVE-2017-17538
•
published on December 13, 2017
MikroTik v6.40.5 devices allow remote attackers to cause a denial of service via a flood of ICMP packets.
-
CVE-2017-17567
•
published on December 13, 2017
Scubez Posty Readymade Classifieds has SQL Injection via the admin/user_activate_submit.php ID parameter.
-
CVE-2017-17568
•
published on December 13, 2017
Scubez Posty Readymade Classifieds has Incorrect Access Control for visiting admin/user_activate_submit.php (aka the backend PHP script), which might allow remote attackers to obtain sensitive information via a direct request.
-
CVE-2017-17569
•
published on December 13, 2017
Scubez Posty Readymade Classifieds has XSS via the admin/user_activate_submit.php ID parameter.
-
CVE-2017-17570
•
published on December 13, 2017
FS Expedia Clone 1.0 has SQL Injection via the pages.php or content.php id parameter, or the show-flight-result.php fl_orig or fl_dest parameter.
-
CVE-2017-17571
•
published on December 13, 2017
FS Foodpanda Clone 1.0 has SQL Injection via the /food keywords parameter.
-
CVE-2017-17572
•
published on December 13, 2017
FS Amazon Clone 1.0 has SQL Injection via the PATH_INFO to /VerAyari.
-
CVE-2017-17573
•
published on December 13, 2017
FS Ebay Clone 1.0 has SQL Injection via the product.php id parameter, or the search.php category_id or sub_category_id parameter.
-
CVE-2017-17574
•
published on December 13, 2017
FS Care Clone 1.0 has SQL Injection via the searchJob.php jobType or jobFrequency parameter.
-
CVE-2017-17575
•
published on December 13, 2017
FS Groupon Clone 1.0 has SQL Injection via the item_details.php id parameter or the vendor_details.php id parameter.
-
CVE-2017-17576
•
published on December 13, 2017
FS Gigs Script 1.0 has SQL Injection via the browse-category.php cat parameter, browse-scategory.php sc parameter, or service-provider.php ser parameter.
-
CVE-2017-17577
•
published on December 13, 2017
FS Trademe Clone 1.0 has SQL Injection via the search_item.php search parameter or the general_item_details.php id parameter.
-
CVE-2017-17578
•
published on December 13, 2017
FS Crowdfunding Script 1.0 has SQL Injection via the latest_news_details.php id parameter.
-
CVE-2017-17579
•
published on December 13, 2017
FS Freelancer Clone 1.0 has SQL Injection via the profile.php u parameter.
-
CVE-2017-17580
•
published on December 13, 2017
FS Linkedin Clone 1.0 has SQL Injection via the group.php grid parameter, profile.php fid parameter, or company_details.php id parameter.
-
CVE-2017-17581
•
published on December 13, 2017
FS Quibids Clone 1.0 has SQL Injection via the itechd.php productid parameter.