CVE-2009-2567 – Joomla! Component Almond Classifieds 5.6.2 - Blind SQL Injection
https://notcve.org/view.php?id=CVE-2009-2567
SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 5.6.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. Una vulnerabilidad de inyección de SQL en Almond Classifieds (com_aclassf) v5.6.2 de Joomla! permite a atacantes remotos ejecutar comandos SQL a través del parámetro id en index.php. • https://www.exploit-db.com/exploits/8619 http://www.exploit-db.com/exploits/8619 http://www.securityfocus.com/bid/34843 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2005-4312
https://notcve.org/view.php?id=CVE-2005-4312
SQL injection vulnerability in index.php in AlmondSoft Almond Classifieds 5.02 allows remote attackers to execute arbitrary SQL commands via the id parameter. • http://pridels0.blogspot.com/2005/12/almondsoft-products-sql-inj.html http://secunia.com/advisories/18094 http://www.osvdb.org/21783 http://www.securityfocus.com/bid/15899 http://www.vupen.com/english/advisories/2005/2943 •
CVE-2005-4313
https://notcve.org/view.php?id=CVE-2005-4313
SQL injection vulnerability in index.php in AlmondSoft Almond Personals 4.05 allows remote attackers to execute arbitrary SQL commands via the id parameter. • http://pridels0.blogspot.com/2005/12/almondsoft-products-sql-inj.html http://secunia.com/advisories/18094 http://www.osvdb.org/21783 http://www.securityfocus.com/bid/15899 http://www.vupen.com/english/advisories/2005/2943 https://exchange.xforce.ibmcloud.com/vulnerabilities/50393 •
CVE-2005-3741
https://notcve.org/view.php?id=CVE-2005-3741
Almond Classifieds does not properly verify the password, which allows attackers to bypass access restrictions. Almond Classifieds no verifica apropiadamente la contraseña, lo que permite a atacantes sortear las restricciones de acceso. • http://www.securityfocus.com/bid/15505 •