dieselscripts CVE Vulnerabilities & CVE List (9)

Products (CPE): — CVEs: 9

dieselscripts vulnerability overview

Aggregates CVE and security vulnerability intelligence across all dieselscripts-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk sql injection and vendor risk cross-site scripting; exposure may include vendor impact data exposure in vendor surface production workloads contexts.

Vulnerability distribution trend (last 24 months)

Showing 19 of 9 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2008-6468 SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in a browse action. [email protected] 7.5 0.93% 2009-03-13 2026-06-16
CVE-2008-6467 SQL injection vulnerability in jobs/jobseekers/job-info.php in Diesel Job Site allows remote attackers to execute arbitrary SQL commands via the job_id parameter. [email protected] 7.5 0.93% 2009-03-13 2026-06-16
CVE-2008-4150 SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2006-3763. [email protected] 7.5 1.01% 2008-09-24 2026-06-16
CVE-2006-4362 Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML via the ps parameter. [email protected] 4.3 1.91% 2006-08-26 2026-06-16
CVE-2006-4361 Multiple cross-site scripting (XSS) vulnerabilities in jobseekers/forgot.php in Diesel Job Site allow remote attackers to inject arbitrary web script or HTML via the (1) uname or (2) SEmail parameters. [email protected] 4.3 1.27% 2006-08-26 2026-06-16
CVE-2006-4358 Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the read parameter. [email protected] 4.3 1.89% 2006-08-26 2026-06-16
CVE-2006-4357 PHP remote file inclusion vulnerability in clients/index.php in Diesel Smart Traffic allows remote attackers to execute arbitrary PHP code via a URL in the src parameter. [email protected] 7.5 2.48% 2006-08-26 2026-06-16
CVE-2006-3763 SQL injection vulnerability in category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id parameter. [email protected] 7.5 1.26% 2006-07-21 2026-06-16
CVE-2006-2540 Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by the product developers. [email protected] 5.0 1.17% 2006-05-23 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence