Skip to content
Noroxi

dieselscripts records

9 published records for vendor dieselscripts.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    9 records
    • CVE-2006-4357
      31Monitor

      PHP remote file inclusion vulnerability in clients/index.php in Diesel Smart Traffic allows remote attackers to execute arbitrary PHP code v

      HighCVSS 7.5Proof of conceptEPSS 3%

      dieselscripts · diesel smart trafficAug 26, 2006

    • CVE-2006-3763
      30Monitor

      SQL injection vulnerability in category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id paramet

      HighCVSS 7.5Proof of conceptEPSS 1%

      dieselscripts · diesel joke siteJul 21, 2006

    • CVE-2008-4150
      30Monitor

      SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id

      HighCVSS 7.5Proof of conceptEPSS 1%

      dieselscripts · diesel joke siteSep 24, 2008

    • CVE-2008-6468
      30Monitor

      SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in a

      HighCVSS 7.5Proof of conceptEPSS 1%

      dieselscripts · diesel payMar 13, 2009

    • CVE-2008-6467
      30Monitor

      SQL injection vulnerability in jobs/jobseekers/job-info.php in Diesel Job Site allows remote attackers to execute arbitrary SQL commands via

      HighCVSS 7.5Proof of conceptEPSS 1%

      dieselscripts · diesel job siteMar 13, 2009

    • CVE-2006-2540
      20Monitor

      Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by

      MediumCVSS 5.0No exploitEPSS 1%

      dieselscripts · diesel job siteMay 23, 2006

    • CVE-2006-4362
      18Monitor

      Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML via

      MediumCVSS 4.3Proof of conceptEPSS 2%

      dieselscripts · diesel paid mailAug 26, 2006

    • CVE-2006-4358
      18Monitor

      Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the r

      MediumCVSS 4.3Proof of conceptEPSS 2%

      dieselscripts · diesel payAug 26, 2006

    • CVE-2006-4361
      17Monitor

      Multiple cross-site scripting (XSS) vulnerabilities in jobseekers/forgot.php in Diesel Job Site allow remote attackers to inject arbitrary w

      MediumCVSS 4.3No exploitEPSS 1%

      dieselscripts · diesel job siteAug 26, 2006