dieselscripts records
9 published records for vendor dieselscripts.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2006-4357Proof of concept | PHP remote file inclusion vulnerability in clients/index.php in Diesel Smart Traffic allows remote attackers to execute arbitrary PHP code vdieselscripts · diesel smart traffic | High7.5 | — | 2.6% | Aug 26, 2006 |
30Monitor | CVE-2006-3763Proof of concept | SQL injection vulnerability in category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id parametdieselscripts · diesel joke site | High7.5 | — | 1.3% | Jul 21, 2006 |
30Monitor | CVE-2008-4150Proof of concept | SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the iddieselscripts · diesel joke site · CWE-89 | High7.5 | — | 1.0% | Sep 24, 2008 |
30Monitor | CVE-2008-6468Proof of concept | SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in adieselscripts · diesel pay · CWE-89 | High7.5 | — | 0.9% | Mar 13, 2009 |
30Monitor | CVE-2008-6467Proof of concept | SQL injection vulnerability in jobs/jobseekers/job-info.php in Diesel Job Site allows remote attackers to execute arbitrary SQL commands viadieselscripts · diesel job site · CWE-89 | High7.5 | — | 0.9% | Mar 13, 2009 |
20Monitor | CVE-2006-2540No exploit | Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by dieselscripts · diesel job site | Medium5.0 | — | 1.2% | May 23, 2006 |
18Monitor | CVE-2006-4362Proof of concept | Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML viadieselscripts · diesel paid mail | Medium4.3 | — | 1.9% | Aug 26, 2006 |
18Monitor | CVE-2006-4358Proof of concept | Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the rdieselscripts · diesel pay | Medium4.3 | — | 1.9% | Aug 26, 2006 |
17Monitor | CVE-2006-4361No exploit | Multiple cross-site scripting (XSS) vulnerabilities in jobseekers/forgot.php in Diesel Job Site allow remote attackers to inject arbitrary wdieselscripts · diesel job site | Medium4.3 | — | 1.3% | Aug 26, 2006 |
- CVE-2006-435731Monitor
PHP remote file inclusion vulnerability in clients/index.php in Diesel Smart Traffic allows remote attackers to execute arbitrary PHP code v
HighCVSS 7.5Proof of conceptEPSS 3%dieselscripts · diesel smart trafficAug 26, 2006
- CVE-2006-376330Monitor
SQL injection vulnerability in category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id paramet
HighCVSS 7.5Proof of conceptEPSS 1%dieselscripts · diesel joke siteJul 21, 2006
- CVE-2008-415030Monitor
SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id
HighCVSS 7.5Proof of conceptEPSS 1%dieselscripts · diesel joke siteSep 24, 2008
- CVE-2008-646830Monitor
SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in a
HighCVSS 7.5Proof of conceptEPSS 1%dieselscripts · diesel payMar 13, 2009
- CVE-2008-646730Monitor
SQL injection vulnerability in jobs/jobseekers/job-info.php in Diesel Job Site allows remote attackers to execute arbitrary SQL commands via
HighCVSS 7.5Proof of conceptEPSS 1%dieselscripts · diesel job siteMar 13, 2009
- CVE-2006-254020Monitor
Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by
MediumCVSS 5.0No exploitEPSS 1%dieselscripts · diesel job siteMay 23, 2006
- CVE-2006-436218Monitor
Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML via
MediumCVSS 4.3Proof of conceptEPSS 2%dieselscripts · diesel paid mailAug 26, 2006
- CVE-2006-435818Monitor
Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the r
MediumCVSS 4.3Proof of conceptEPSS 2%dieselscripts · diesel payAug 26, 2006
- CVE-2006-436117Monitor
Multiple cross-site scripting (XSS) vulnerabilities in jobseekers/forgot.php in Diesel Job Site allow remote attackers to inject arbitrary w
MediumCVSS 4.3No exploitEPSS 1%dieselscripts · diesel job siteAug 26, 2006