275811
|
- |
|
intralearn
|
intralearn
|
Multiple cross-site scripting (XSS) vulnerabilities in IntraLearn Software IntraLearn 2.1, and possibly other versions before 4.2.3, allow remote attackers to inject arbitrary web script or HTML via …
|
CWE-79
Cross-site Scripting
|
CVE-2008-7147
|
2009-09-3 13:00 |
2009-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275812
|
- |
|
synfig
|
synfigstudio
|
Unspecified vulnerability in Synfig Animation Studio before 0.61.08 allows attackers to execute arbitrary code via a crafted .sif file.
|
NVD-CWE-noinfo
|
CVE-2008-7148
|
2009-09-3 13:00 |
2009-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275813
|
- |
|
bcoos
|
bcoos
|
SQL injection vulnerability in modules/adresses/ratefile.php in bcoos 1.0.10 and earlier allows remote attackers to execute arbitrary SQL commands via the lid parameter, a different vector than CVE-2…
|
CWE-89
SQL Injection
|
CVE-2007-6275
|
2009-09-3 13:00 |
2007-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275814
|
- |
|
james_ashton
|
compface
|
Buffer overflow in compface 1.5.2 and earlier allows user-assisted attackers to cause a denial of service (crash) via a long declaration in a .xbm file. NOTE: this issue only affects compface on dis…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-2286
|
2009-09-2 14:24 |
2009-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275815
|
- |
|
freenas
|
freenas
|
Cross-site scripting (XSS) vulnerability in FreeNAS before 0.69.2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2739
|
2009-09-2 14:24 |
2009-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275816
|
- |
|
igno_saitz
|
libmikmod
|
libmikmod 3.1.11 through 3.2.0, as used by MikMod and possibly other products, allows user-assisted attackers to cause a denial of service (application crash) by loading an XM file.
|
NVD-CWE-noinfo
|
CVE-2009-0179
|
2009-09-2 14:20 |
2009-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275817
|
- |
|
zope
|
zope
|
PythonScripts in Zope 2 2.11.2 and earlier, as used in Conga and other products, allows remote authenticated users to cause a denial of service (resource consumption or application halt) via certain …
|
CWE-399
Resource Management Errors
|
CVE-2008-5102
|
2009-09-1 14:21 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275818
|
- |
|
zope
|
zope
|
http://www.zope.org/Products/Zope/Hotfix-2008-08-12/README.txt
Affected Versions
* Zope 2.7.0 to Zope 2.11.2
---
http://openwall.com/lists/oss-security/2008/11/12/2
Affected Conga versio…
|
CWE-399
Resource Management Errors
|
CVE-2008-5102
|
2009-09-1 14:21 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275819
|
- |
|
punbb
|
punbb
|
Cross-site scripting (XSS) vulnerability in PunBB 1.2.16 and earlier allows remote attackers to inject arbitrary web script or HTML via the get_host parameter to moderate.php.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1485
|
2009-09-1 14:14 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275820
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre does not properly block data: URIs in Location headers in HTTP responses, which allows remote attackers to conduct cross-site scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2009-3012
|
2009-09-1 13:00 |
2009-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|